Yinxi Liu

Results 19 issues of Yinxi Liu

We are working on the [ReDoS](https://www.owasp.org/index.php/Regular_expression_Denial_of_Service_-_ReDoS) problem and detected 1 vulnerable regex(es) from your repository. 1: ``^(?:\s+(?:"(?:[^"\\]|\\\\|\\.)+"|'(?:[^'\\]|\\\\|\\.)+'|\((?:[^)\\]|\\\\|\\.)+\)))?`` in markdown-editor/codemirror/markdown/markdown.js Please try the following: var pattern = "^(?:\\s+(?:\"(?:[^\"\\\\]|\\\\\\\\|\\\\.)+\"|'(?:[^'\\\\]|\\\\\\\\|\\\\.)+'|\\((?:[^)\\\\]|\\\\\\\\|\\\\.)+\\)))?"; var input =...

We are working on the [ReDoS](https://www.owasp.org/index.php/Regular_expression_Denial_of_Service_-_ReDoS) problem and detected 3 vulnerable regex(es) from your repository. 1: ``^[\t]*([\w+#-]+)?(?:\(((?:\s*\w[-\w]*(?:=(?:'(?:.*?[^\\])?'|"(?:.*?[^\\])?"|(?:[^'"][^\s]*)))?)*)\))?(?::([^:]*)(?::(\d+))?)?\s*$`` in Boostnote/browser/lib/markdown-it-fence.js 2: ``^(?:(?:(?:https?|ftp):)?\/\/)(?:\S+(?::\S*)?@)?(?:(?!(?:10|127)(?:\.\d{1,3}){3})(?!(?:169\.254|192\.168)(?:\.\d{1,3}){2})(?!172\.(?:1[6-9]|2\d|3[0-1])(?:\.\d{1,3}){2})(?:[1-9]\d?|1\d\d|2[01]\d|22[0-3])(?:\.(?:1?\d{1,2}|2[0-4]\d|25[0-5])){2}(?:\.(?:[1-9]\d?|1\d\d|2[0-4]\d|25[0-4]))|(?:(?:[a-z\u00a1-\uffff0-9]-*)*[a-z\u00a1-\uffff0-9]+)(?:\.(?:[a-z\u00a1-\uffff0-9]-*)*[a-z\u00a1-\uffff0-9]+)*(?:\.(?:[a-z\u00a1-\uffff]{2,})).?)(?::\d{2,5})?(?:[/?#]\S*)?$`` in Boostnote/browser/main/lib/dataApi/createNoteFromUrl.js 3: ``^(~~~+|```+)[ \t]*([\w+#-]+)?(?:\(((?:\s*\w[-\w]*(?:=(?:'(?:.*?[^\\])?'|"(?:.*?[^\\])?"|(?:[^'"][^\s]*)))?)*)\))?(?::([^:]*)(?::(\d+))?)?\s*$`` in Boostnote/extra_scripts/codemirror/mode/bfm/bfm.js Please try...

We are working on the [ReDoS](https://www.owasp.org/index.php/Regular_expression_Denial_of_Service_-_ReDoS) problem and detected 4 vulnerable regex(es) from your repository. 1: `(\"(\\.|[^\"])*\")` in webglstudio.js/editor/js/extra/litegui.min.js 2: `(\"(\\.|[^\"])*\")` in webglstudio.js/editor/js/extra/litegui.js 3: `\*([^*]|[\r\n]|(\*+([^*/]|[\r\n])))*\*+` in webglstudio.js/editor/js/extra/litescene.min.js 4: `(\/\*([^*]|[\r\n]|(\*+([^*\/]|[\r\n])))*\*+\/)|(\/\/.*)` in...

We are working on the [ReDoS](https://www.owasp.org/index.php/Regular_expression_Denial_of_Service_-_ReDoS) problem and detected 2 vulnerable regex(es) from your repository. 1: ``^"(?:[^\n\f\r"\\]|\\(?:\r\n?|\n|\f)|\\[\S\s])*"`` in editor.md/docs/scripts/prettify/lang-css.js 2: ``^(?:\s+(?:"(?:[^"\\]|\\\\|\\.)+"|'(?:[^'\\]|\\\\|\\.)+'|\((?:[^)\\]|\\\\|\\.)+\)))?`` in editor.md/lib/codemirror/mode/markdown/markdown.js Please try the following: var pattern =...

We are working on the [ReDoS](https://www.owasp.org/index.php/Regular_expression_Denial_of_Service_-_ReDoS) problem and detected 2 vulnerable regex(es) from your repository. 1: ``:((?:[\w\u00c0-\uFFFF\-]|\\.)+)(?:\((['"]?)((?:\([^\)]+\)|[^\(\)]*)+)\2\))?`` in socketstream/test/fixtures/project/client/code/libs/jquery.min.js 2: ``((?:\((?:\([^()]+\)|[^()]+)+\)|\[(?:\[[^\[\]]*\]|['"][^'"]*['"]|[^\[\]'"]+)+\]|\\.|[^ >+~,(\[\\]+)+|[>+~])(\s*,\s*)?((?:.|\r|\n)*)`` in socketstream/test/fixtures/project/client/code/libs/jquery.min.js Please try the following: var pattern...

We are working on the [ReDoS](https://www.owasp.org/index.php/Regular_expression_Denial_of_Service_-_ReDoS) problem and detected 3 vulnerable regex(es) from your repository. 1: ``[/][*](\s|.)+?[*][/]`` in OmniDB/OmniDB/OmniDB_app/static/OmniDB_app/lib/cytoscape/cytoscape.js 2: ``\[(?:\\.|[^\]])*?\]|\\.|\(\?[:=!]|(\()`` in OmniDB/OmniDB/OmniDB_app/static/OmniDB_app/lib/ace/ace.js 3: ``[\/][*](\s|.)+?[*][\/]`` in OmniDB/OmniDB/OmniDB_app/static/OmniDB_app/lib/cytoscape/cytoscape.min.js Please try the...

We are working on the [ReDoS](https://www.owasp.org/index.php/Regular_expression_Denial_of_Service_-_ReDoS) problem and detected 3 vulnerable regex(es) from your repository. 1: ``:((?:[\w\u00c0-\uFFFF\-]|\\.)+)(?:\((['"]?)((?:\([^\)]+\)|[^\(\)]*)+)\2\))?`` in mercury/distro/javascripts/jquery-1.7.js 2: ``((?:\((?:\([^()]+\)|[^()]+)+\)|\[(?:\[[^\[\]]*\]|['"][^'"]*['"]|[^\[\]'"]+)+\]|\\.|[^ >+~,(\[\\]+)+|[>+~])(\s*,\s*)?((?:.|\r|\n)*)`` in mercury/app/assets/javascripts/jquery-1.7.js 3: ``(])*>|)`` in distro/javascripts/mercury.min.js Please try...

We are working on the [ReDoS](https://www.owasp.org/index.php/Regular_expression_Denial_of_Service_-_ReDoS) problem and detected 1 vulnerable regex(es) from your repository. 1: ``[(),]|"(?:\\.|[^"\n])*"|'(?:\\.|[^'\n])*'|\/\*[\s\S]*?\*\/`` in keystone-classic/admin/public/js/packages.js Please try the following: var pattern = "[(),]|\"(?:\\\\.|[^\"\\n])*\"|'(?:\\\\.|[^'\\n])*'|\\/\\*[\\s\\S]*?\\*\\/"; var input =...

We are working on the [ReDoS](https://www.owasp.org/index.php/Regular_expression_Denial_of_Service_-_ReDoS) problem and detected 1 vulnerable regex(es) from your repository. 1: ``^(?:\s+(?:"(?:[^"\\]|\\\\|\\.)+"|'(?:[^'\\]|\\\\|\\.)+'|\((?:[^)\\]|\\\\|\\.)+\)))?`` in Moeditor/views/main/CodeMirror/markdown_math.js Please try the following: var pattern = "^(?:\\s+(?:\"(?:[^\"\\\\]|\\\\\\\\|\\\\.)+\"|'(?:[^'\\\\]|\\\\\\\\|\\\\.)+'|\\((?:[^)\\\\]|\\\\\\\\|\\\\.)+\\)))?"; var input =...

We are working on the [ReDoS](https://www.owasp.org/index.php/Regular_expression_Denial_of_Service_-_ReDoS) problem and detected 2 vulnerable regex(es) from your repository. 1: ``((-?\d+(,\d{3})*(\.\d+)?(x?\*?\d*\^\d+)?)|((\d+-)+\d+)|(_?[-\da-zA-Z\u4E00-\u9FFF\-]_?))+$`` in HexoEditor/views/main/CodeMirror/editor.js 2: ``(`|~~|\*\*?|__)+$`` in HexoEditor/views/main/CodeMirror/editor.js Please try the following: var pattern =...