7.5
CVSSv3

CVE-2020-7661

Published: 04/06/2020 Updated: 10/06/2020
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 697
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

all versions of url-regex are vulnerable to Regular Expression Denial of Service. An attacker providing a very long string in String.test can cause a Denial of Service.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

url-regex project url-regex

Github Repositories

Regular expression matching for URL's. Maintained, safe, and browser-friendly version of url-regex. Resolves CVE-2020-7661 for Node.js servers.

url-regex-safe Regular expression matching for URL's Maintained, safe, and browser-friendly version of url-regex Resolves CVE-2020-7661 for Nodejs servers Works in Node v14+ and browsers Maintained for Spam Scanner and Forward Email Table of Contents Foreword Install Usage Node Browser Options Quick tips and migration from url-regex Limitations Contribut

Lightweight library for creating a service that dynamically makes updates to a social profile account periodically.

social-bio-bot This library is designed to automate dynamic updates to an social profile account such as cycling through profile pictures every 30 seconds Note: the default refresh interval is set to 30000ms (30 seconds) for most dynamic tasks If this interval is set below 20 seconds, there is a chance APIs will block requests if more than 200 are made within an hour Tab

Regular expression matching for URL's. Maintained, safe, and browser-friendly version of url-regex. Resolves CVE-2020-7661 for Node.js servers.

url-regex-safe Regular expression matching for URL's Maintained, safe, and browser-friendly version of url-regex Resolves CVE-2020-7661 for Nodejs servers Works in Node v14+ and browsers Maintained for Spam Scanner and Forward Email Table of Contents Foreword Install Usage Node Browser Options Quick tips and migration from url-regex Limitations Contribut

NodeJS Instagram private API client Next major version Me and Nerix are ready to announce the next 2xx version of this library It has extended feature list It's a big release We have significantly expanded the functionality and capabilities The library turned into a monorepository and now it's a set of libraries, connected in an ecosystem It consists of

NodeJS Instagram private API SDK. Written in TypeScript.

NodeJS Instagram private API client Next Major Version Nerix and I are excited to announce the next 3xx version of this library It features an extended list of capabilities and is a significant release We have substantially expanded the functionality and possibilities The library has transformed into a monorepository and is now a set of libraries connected in an ecos

Lightweight library for creating a service that dynamically makes updates to a social profile account periodically.

social-bio-bot This library is designed to automate dynamic updates to an social profile account such as cycling through profile pictures every 30 seconds Note: the default refresh interval is set to 30000ms (30 seconds) for most dynamic tasks If this interval is set below 20 seconds, there is a chance APIs will block requests if more than 200 are made within an hour Tab

url-regex-unsafe Regular expression matching for URL's Maintained, and browser-friendly version of url-regex This package is vulnerable to CVE-2020-7661 Works in Node v10120+ and browsers Table of Contents Foreword Install Usage Node Browser Options Quick tips and migration from url-regex Contributors License Foreword url-regex-unsafe is a fork of url-r

Lightweight library for creating a service that dynamically makes updates to a social profile account periodically.

social-bio-bot This library is designed to automate dynamic updates to an social profile account such as cycling through profile pictures every 30 seconds Note: the default refresh interval is set to 30000ms (30 seconds) for most dynamic tasks If this interval is set below 20 seconds, there is a chance APIs will block requests if more than 200 are made within an hour Tab

NodeJS Instagram private API client Next Major Version Nerix and I are excited to announce the next 3xx version of this library It features an extended list of capabilities and is a significant release We have substantially expanded the functionality and possibilities The library has transformed into a monorepository and is now a set of libraries connected in an ecos