Description
The content module is a module to parse HTTP Content-* headers. It is used by the hapijs framework to provide this functionality. The module is vulnerable to regular expression denial of service when passed a specifically crafted Content-Type or Content-Disposition header.
Remediation
References
https://nodesecurity.io/advisories/530
Related Vulnerabilities
CVE-2020-7691 Vulnerability in npm package jspdf
CVE-2021-41182 Vulnerability in maven package org.webjars.bower:jquery-ui
CVE-2020-2297 Vulnerability in maven package com.hoiio.jenkins:sms
CVE-2020-28487 Vulnerability in maven package org.webjars.npm:vis-timeline
CVE-2018-25050 Vulnerability in maven package org.webjars.npm:chosen-js