Medium severity6.2NVD Advisory· Published Jan 3, 2023· Updated Jun 17, 2026
CVE-2021-32821
CVE-2021-32821
Description
MooTools is a collection of JavaScript utilities for JavaScript developers. All known versions include a CSS selector parser that is vulnerable to Regular Expression Denial of Service (ReDoS). An attack requires that an attacker can inject a string into a CSS selector at runtime, which is quite common with e.g. jQuery CSS selectors. No patches are available for this issue.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
mootoolsnpm | <= 1.5.2 | — |
Affected products
3Patches
Vulnerability mechanics
References
4- securitylab.github.com/advisories/GHSL-2020-345-redos-mootools/nvdExploitThird Party Advisory
- github.com/advisories/GHSA-v63q-hgqc-qvpgghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-32821ghsaADVISORY
- securitylab.github.com/advisories/GHSL-2020-345-redos-mootoolsghsaADVISORY
News mentions
0No linked articles in our index yet.