It was discovered that the is-my-json-valid JavaScript library used an inefficient regular expression to validate JSON fields defined to have email format. A specially crafted JSON file could cause it to consume an excessive amount of CPU time when validated.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| is-my-json-valid(npm) | 2.0.0 | 2.17.2 | N/A |
| is-my-json-valid(npm) | 0 | 1.4.1 | N/A |
CVSS Metrics