Denial-of-Service in “qs” module (used by express, restify, hapi, +286 others)
blog.liftsecurity.io
blog.liftsecurity.io
> npm install -g nsp
> nsp audit-package // Run in the same dir as your package.json
This will also report any other vulnerabilities, in addition to the "qs" vulnerability.