@mantine/dates is vulnerable to Unlimited Resource Consumption
45
Medium Risk
Affected versions of this package are affected by unlimited resource consumption in a form date handler that can cause infinite useEffect loops due to improper dependency handling or state updates during render. It may degrade performance, crash the app, or block user interactions. An attacker could exploit this by crafting a malicious form to trigger the loop, leading to excessive resource use and potential denial of service.
You are affected if you are using a version that falls within the vulnerable range.
@mantine/dates is vulnerable to Unlimited Resource Consumption in versions 5.9.6 - 7.16.1.
Upgrade the @mantine/dates library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant