Description
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the jquery-validation npm package, when an attacker is able to supply arbitrary input to the url2 method
Remediation
References
https://research.jfrog.com/vulnerabilities/jquery-validation-redos-xray-211348/
Related Vulnerabilities
CVE-2022-45396 Vulnerability in maven package com.thalesgroup.hudson.plugins:sourcemonitor
CVE-2018-3721 Vulnerability in npm package @sailshq/lodash
CVE-2021-21349 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2020-15930 Vulnerability in npm package joplin
CVE-2021-37533 Vulnerability in maven package commons-net:commons-net