-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The patches modify the regular expressions used in the url2 and url methods to fix ReDoS vulnerabilities. These methods are part of the jQuery Validation Plugin and are directly related to the processing of user input for URL validation. The changes indicate that the original regular expressions were inefficient and prone to denial-of-service attacks, making the functions that use them vulnerable.
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| jquery-validation | npm | < 1.19.5 | 1.19.5 |
Ongoing coverage of React2Shell