Description
The no-case module is vulnerable to regular expression denial of service. When malicious untrusted user input is passed into no-case it can block the event loop causing a denial of service condition.
Remediation
References
https://github.com/blakeembrey/no-case/issues/17
https://nodesecurity.io/advisories/529
Related Vulnerabilities
CVE-2022-24613 Vulnerability in maven package com.drewnoakes:metadata-extractor
CVE-2022-35143 Vulnerability in npm package raneto
CVE-2016-10546 Vulnerability in maven package org.webjars:pouchdb
CVE-2020-11998 Vulnerability in maven package org.apache.activemq:activemq-broker
CVE-2018-3721 Vulnerability in maven package org.webjars:lodash