Description
Versions of the package angular from 1.0.0 are vulnerable to Regular Expression Denial of Service (ReDoS) via the $resource service due to the usage of an insecure regular expression. Exploiting this vulnerability is possible by a large carefully-crafted input, which can result in catastrophic backtracking.
Remediation
References
Related Vulnerabilities
silverstripeCMS Improper Restriction of XML External Entity Reference Vulnerability (CVE-2020-25817)
WordPress Plugin Visual Form Builder Cross-Site Scripting (3.0.3)
WordPress Plugin Photo Gallery by 10Web-Mobile-Friendly Image Gallery Local File Inclusion (1.5.24)
WordPress Plugin WP Idea Stream Cross-Site Scripting (2.1.1)