Vulnerabilities/

Regular expression denial of service in react-native

Severity:
High

Description

A regular expression denial of service (ReDoS) vulnerability in the validateBaseUrl function can cause the application to use excessive resources, become unresponsive, or crash. This was introduced in react-native version 0.59.0 and fixed in version 0.64.1.

Recommendation

Update the react-native package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
react-native
Anything's wrong? Let us know Last updated on January 27, 2023