[17] cookie accepts cookie name, path, and domain with out of bounds characters
[16] path-to-regexp outputs backtracking regular expressions
[15] send vulnerable to template injection that can lead to XSS
[14] serve-static vulnerable to template injection that can lead to XSS
[12] Regular Expression Denial of Service (ReDoS) in micromatch
[13] body-parser vulnerable to denial of service when url encoding is enabled
[12] express vulnerable to XSS via response.redirect()
[11] Regular Expression Denial of Service (ReDoS) in micromatch
Uncontrolled resource consumption in braces [11]
[26] ws affected by a DoS when handling a request with many HTTP headers
[24] Uncontrolled resource consumption in braces
[23] Undici's fetch with integrity option is too lax when algorithm is specified but hash value is in incorrect
[22] Undici's Proxy-Authorization header not cleared on cross-origin redirect for dispatch, request, stream, pipeline
[21] Undici proxy-authorization header not cleared on cross-origin redirect in fetch
[HIGH] ws affected by a DoS when handling a request with many HTTP headers
Express.js Open Redirect in malformed URLs [MODERATE] [6]
When claiming legendary cards, the embed will fail to update the interaction, but will save the card to the database
Manga type cards are being claimed as a regular card
AS a user, I want to be able sacrifice cards I have for more currency
perhaps this goes from RED when warning of sacrificing then green when its succesfully done?
AS a user, I want to be given coins automatically to a timer
Should give enough currency to be able to claim once every 20 minutes