Description
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the jquery-validation npm package, when an attacker is able to supply arbitrary input to the url2 method
Remediation
References
https://research.jfrog.com/vulnerabilities/jquery-validation-redos-xray-211348/
Related Vulnerabilities
CVE-2020-26302 Vulnerability in maven package org.webjars.bower:is_js
CVE-2021-29445 Vulnerability in npm package jose-node-esm-runtime
CVE-2020-6428 Vulnerability in maven package org.webjars.npm:electron
CVE-2022-24858 Vulnerability in npm package next-auth
CVE-2020-25711 Vulnerability in maven package org.infinispan:infinispan-server-rest