Vulnerabilities/

Regular expression denial of service in url-regex

Severity:
High

Description

all versions of url-regex are vulnerable to Regular Expression Denial of Service. An attacker providing a very long string in String.test can cause a Denial of Service.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
url-regex
Anything's wrong? Let us know Last updated on January 09, 2023