High severity7.5NVD Advisory· Published Jun 24, 2022· Updated Jun 17, 2026
CVE-2021-40892
CVE-2021-40892
Description
A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in validate-color v2.1.0 when handling crafted invalid rgb(a) strings.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:validate_color_project:validate_color:2.1.0:*:*:*:*:node.js:*:*
- validate-color/validate-colordescription
- Range: =2.1.0
Patches
Vulnerability mechanics
References
1- github.com/yetingli/SaveResults/blob/main/js/validate-color.jsnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.