A comprehensive guide to the dangers of Regular Expressions in JavaScript
A comprehensive guide to the dangers of Regular Expressions in JavaScript
A deep investigation into regular expression denial of service (ReDoS) vulnerabilities in JavaScript
You're viewing a single thread.
Is there one thing not screwed up in this language? I mean it's regex, there are so many good implementations for it.
3 8 ReplyJavaScript's regex engine isn't the only one to have these problems. There certainly are other implementations, like Re2 and Rust's implementation, that don't have this issue. But they also lack some of the features of the JS implementation too.
5 0 ReplyOk thanks for the clarification.
I would argue, the gold standard of regex would be perlre or even re from python. I never heard one discouraging using them. Do you know sth I don't?
1 4 ReplyBoth Perl and Python use backtracking regex engines and are thus susceptible to similar problems as discussed in the OP.
3 0 Reply