VDB
Sign up
MEDIUM5.3

GHSA-hg3w-7hj9-m3f7

Regular expression denial of service in url_regex

Details

All versions of package url-regex are vulnerable to Regular Expression Denial of Service (ReDoS) which can cause the CPU usage to crash.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/url-regex
Introduced in: 0

No fixed version published yet for url-regex (pip). Pin to a known-safe version or switch to an alternative.

References