Description
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the jquery-validation npm package, when an attacker is able to supply arbitrary input to the url2 method
Remediation
References
https://research.jfrog.com/vulnerabilities/jquery-validation-redos-xray-211348/
Related Vulnerabilities
CVE-2020-28458 Vulnerability in maven package org.webjars.npm:datatables.net
CVE-2016-4055 Vulnerability in maven package org.fujion.webjars:moment
CVE-2021-41532 Vulnerability in maven package org.apache.ozone:ozone-recon
CVE-2020-1938 Vulnerability in maven package org.apache.tomcat:coyote
CVE-2023-40037 Vulnerability in maven package org.apache.nifi:nifi-dbcp-base