kevva/url-regex
Releases22
Frequency2 months 2 weeks
Last Release
Stars354
Regular expression for matching URLs
CVE History
| CVE | Affected | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|---|
| all versions, <= 1.0.4 | 5.3 MEDIUM | 5 MEDIUM | ||
All versions of package url-regex are vulnerable to Regular Expression Denial of Service (ReDoS) which can cause the CPU usage to crash. | ||||
| all versions, <= 5.0.0 | 7.5 HIGH | 7.8 HIGH | ||
all versions of url-regex are vulnerable to Regular Expression Denial of Service. An attacker providing a very long string in String.test can cause a Denial of Service. | ||||