vuelidate is vulnerable to Inefficient Regular Expression Complexity
The product uses a regular expression with an inefficient, possibly exponential worst-case computational complexity that consumes excessive CPU cycles.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Vuelidate | Vuelidate_project | * | 2.0.0 (excluding) |
Vuelidate | Vuelidate_project | 2.0.0-alpha0 (including) | 2.0.0-alpha0 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha1 (including) | 2.0.0-alpha1 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha10 (including) | 2.0.0-alpha10 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha11 (including) | 2.0.0-alpha11 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha12 (including) | 2.0.0-alpha12 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha13 (including) | 2.0.0-alpha13 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha14 (including) | 2.0.0-alpha14 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha15 (including) | 2.0.0-alpha15 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha16 (including) | 2.0.0-alpha16 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha17 (including) | 2.0.0-alpha17 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha18 (including) | 2.0.0-alpha18 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha19 (including) | 2.0.0-alpha19 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha2 (including) | 2.0.0-alpha2 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha20 (including) | 2.0.0-alpha20 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha21 (including) | 2.0.0-alpha21 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha22 (including) | 2.0.0-alpha22 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha23 (including) | 2.0.0-alpha23 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha24 (including) | 2.0.0-alpha24 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha25 (including) | 2.0.0-alpha25 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha3 (including) | 2.0.0-alpha3 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha4 (including) | 2.0.0-alpha4 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha5 (including) | 2.0.0-alpha5 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha6 (including) | 2.0.0-alpha6 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha7 (including) | 2.0.0-alpha7 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha8 (including) | 2.0.0-alpha8 (including) |
Vuelidate | Vuelidate_project | 2.0.0-alpha9 (including) | 2.0.0-alpha9 (including) |
Attackers can create crafted inputs that
intentionally cause the regular expression to use
excessive backtracking in a way that causes the CPU
consumption to spike.