CVE-2021-43309

Publication date

2022-08-24 15:48:36

Family

JFROG

State

PUBLISHED

Description

An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the uri-template-lite npm package, when an attacker is able to supply arbitrary input to the "URI.expand" method