Regular Expression Denial of Service Vulnerability in Validate-Color by Yeting Li
CVE-2021-40892
7.5HIGH
What is CVE-2021-40892?
A Regular Expression Denial of Service (ReDOS) vulnerability exists in version 2.1.0 of the validate-color library, enabling attackers to exploit crafted invalid rgb(a) strings. This flaw can lead to application slowdowns or crashes, posing a risk to the stability of systems that rely on this component for color validation.
