A comprehensive guide to the dangers of Regular Expressions in JavaScript
A comprehensive guide to the dangers of Regular Expressions in JavaScript
A deep investigation into regular expression denial of service (ReDoS) vulnerabilities in JavaScript

You're viewing a single thread.
sebsch @discuss.tchncs.de Is there one thing not screwed up in this language? I mean it's regex, there are so many good implementations for it.
4 8 Replyphilnash @programming.dev OP JavaScript's regex engine isn't the only one to have these problems. There certainly are other implementations, like Re2 and Rust's implementation, that don't have this issue. But they also lack some of the features of the JS implementation too.
5 0 Replysebsch @discuss.tchncs.de Ok thanks for the clarification.
I would argue, the gold standard of regex would be perlre or even re from python. I never heard one discouraging using them. Do you know sth I don't?
1 4 Replyburntsushi @programming.dev
Both Perl and Python use backtracking regex engines and are thus susceptible to similar problems as discussed in the OP.
3 0 Reply