Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-21252

Опубликовано: 13 янв. 2021
Источник: redhat
CVSS3: 7.5

Описание

The jQuery Validation Plugin provides drop-in validation for your existing forms. It is published as an npm package "jquery-validation". jquery-validation before version 1.19.3 contains one or more regular expressions that are vulnerable to ReDoS (Regular Expression Denial of Service). This is fixed in 1.19.3.

A flaw was found in jQuery-validate. There is an issue where it contains one or more regular expressions vulnerable to a Regular Expression Denial of Service (ReDoS).

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Decision Manager 7jquery-validationNot affected
Red Hat Process Automation 7jquery-validationNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=2096941jquery-validate: jquery.validate.js vulnerable to ReDoS

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 5 лет назад

The jQuery Validation Plugin provides drop-in validation for your existing forms. It is published as an npm package "jquery-validation". jquery-validation before version 1.19.3 contains one or more regular expressions that are vulnerable to ReDoS (Regular Expression Denial of Service). This is fixed in 1.19.3.

CVSS3: 5.3
nvd
около 5 лет назад

The jQuery Validation Plugin provides drop-in validation for your existing forms. It is published as an npm package "jquery-validation". jquery-validation before version 1.19.3 contains one or more regular expressions that are vulnerable to ReDoS (Regular Expression Denial of Service). This is fixed in 1.19.3.

CVSS3: 5.3
debian
около 5 лет назад

The jQuery Validation Plugin provides drop-in validation for your exis ...

CVSS3: 7.5
github
около 5 лет назад

Regular Expression Denial of Service in jquery-validation

7.5 High

CVSS3