CVE-2020-28501: Crawlerdetect Project Crawlerdetect
High severity, CVSS 7.5. EPSS: 1.5% chance of exploitation in the next 30 days.
This affects the package es6-crawler-detect before 3.1.3. No limitation of user agent string length supplied to regex operators.
Affected products
- Crawlerdetect Project Crawlerdetect: before 3.1.3 (fixed in 3.1.3)
Published 2021-03-22. Last modified 2026-06-17.