The jQuery Validation Plugin provides drop-in validation for your existing forms. It is published as an npm package "jquery-validation". jquery-validation before version 1.19.3 contains one or more regular expressions that are vulnerable to ReDoS (Regular Expression Denial of Service). This is fixed in 1.19.3.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| jquery-validation(npm) | 0 | 1.19.3 | N/A |
| jQuery.Validation(NuGet) | 0 | 1.19.3 | N/A |
CVSS Metrics