ZeroHour

CVE-2021-21252

CVSS 3.1
7.5 high
EPSS
3%p88
Published
()
Modified
Description

The jQuery Validation Plugin provides drop-in validation for your existing forms. It is published as an npm package "jquery-validation". jquery-validation before version 1.19.3 contains one or more regular expressions that are vulnerable to ReDoS (Regular Expression Denial of Service). This is fixed in 1.19.3.

Vendors
jqueryvalidationnetapp
Products
jquery validation, snapcenter
Weakness
CWE-400
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.