Description
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the jquery-validation npm package, when an attacker is able to supply arbitrary input to the url2 method
Remediation
References
https://research.jfrog.com/vulnerabilities/jquery-validation-redos-xray-211348/
Related Vulnerabilities
CVE-2022-23463 Vulnerability in maven package com.nepxion:discovery-commons
CVE-2023-23630 Vulnerability in npm package eta
CVE-2021-4279 Vulnerability in maven package org.webjars.npm:fast-json-patch
CVE-2021-23387 Vulnerability in npm package trailing-slash
CVE-2020-28268 Vulnerability in npm package controlled-merge