Description
The no-case module is vulnerable to regular expression denial of service. When malicious untrusted user input is passed into no-case it can block the event loop causing a denial of service condition.
Remediation
References
https://github.com/blakeembrey/no-case/issues/17
https://nodesecurity.io/advisories/529
Related Vulnerabilities
CVE-2018-5673 Vulnerability in maven package org.webjars.npm:dojo
CVE-2023-39155 Vulnerability in maven package org.jenkins-ci.plugins:chef-identity
CVE-2020-15168 Vulnerability in maven package org.webjars.npm:node-fetch
CVE-2022-36909 Vulnerability in maven package org.jenkins-ci.plugins:openshift-deployer
CVE-2016-0779 Vulnerability in maven package org.apache.tomee:arquillian-tomee-embedded