A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in validate-color v2.1.0 when handling crafted invalid rgb(a) strings.
References
Link | Resource |
---|---|
https://github.com/yetingli/SaveResults/blob/main/js/validate-color.js | Exploit Third Party Advisory |
Configurations
Information
Published : 2022-06-24 07:15
Updated : 2022-07-01 06:54
NVD link : CVE-2021-40892
Mitre link : CVE-2021-40892
JSON object : View
CWE
Products Affected
validate_color_project
- validate_color