VYPR
High severityNVD Advisory· Published Jan 13, 2021· Updated Aug 3, 2024

Regular expression denial of service in jquery-validation

CVE-2021-21252

Description

The jQuery Validation Plugin provides drop-in validation for your existing forms. It is published as an npm package "jquery-validation". jquery-validation before version 1.19.3 contains one or more regular expressions that are vulnerable to ReDoS (Regular Expression Denial of Service). This is fixed in 1.19.3.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
jquery-validationnpm
< 1.19.31.19.3
jQuery.ValidationNuGet
< 1.19.31.19.3

Affected products

3

Patches

Vulnerability mechanics

References

12

News mentions

0

No linked articles in our index yet.