In the CGI gem before 0.4.2 for Ruby, a Regular Expression Denial of Service (ReDoS) vulnerability exists in the Util#escapeElement method.
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-57938.json"