Description
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the jquery-validation npm package, when an attacker is able to supply arbitrary input to the url2 method
Remediation
References
https://research.jfrog.com/vulnerabilities/jquery-validation-redos-xray-211348/
Related Vulnerabilities
CVE-2016-10735 Vulnerability in maven package fr.norad.bootstrap:bootstrap
CVE-2022-39249 Vulnerability in npm package matrix-js-sdk
CVE-2020-7692 Vulnerability in maven package com.google.oauth-client:google-oauth-client
CVE-2022-24802 Vulnerability in npm package deepmerge-ts
CVE-2022-21830 Vulnerability in npm package @rocket.chat/livechat