Description
In Django 3.2 before 3.2.20, 4 before 4.1.10, and 4.2 before 4.2.3, EmailValidator and URLValidator are subject to a potential ReDoS (regular expression denial of service) attack via a very large number of domain name labels of emails and URLs.
Remediation
References
Related Vulnerabilities
WordPress Plugin Advanced Custom Fields PRO Multiple Security Bypass Vulnerabilities (5.10)
Jenkins Other Vulnerability (CVE-2021-21696)
Drupal Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2013-6385)
WordPress Plugin Easy Digital Downloads QR Code Cross-Site Scripting (1.1.0)
WordPress Plugin Snow Monkey Forms Directory Traversal (5.1.1)