Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30671
HistoryMay 25, 2021 - 7:10 a.m.

Regular Expression Denial Of Service (ReDoS)

2021-05-2507:10:20
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

0.001 Low

EPSS

Percentile

43.3%

normalize-url is vulnerable to regular expression denial of service. The usage of an insecure regex allows an attacker to cause a denial of service condition via a malicious URL string.