Description
Versions of the package angular from 1.0.0 are vulnerable to Regular Expression Denial of Service (ReDoS) via the $resource service due to the usage of an insecure regular expression. Exploiting this vulnerability is possible by a large carefully-crafted input, which can result in catastrophic backtracking.
Remediation
References
Related Vulnerabilities
Django Weak Password Recovery Mechanism for Forgotten Password Vulnerability (CVE-2019-19844)
WordPress Plugin WP Payeezy Pay Local File Inclusion (2.97)
MySQL CVE-2020-14866 Vulnerability (CVE-2020-14866)
Microsoft SQL Server Other Vulnerability (CVE-2004-1560)
WordPress Plugin Meta Box-WordPress Custom Fields Framework Arbitrary File Upload (4.16.1)