Description
The content module is a module to parse HTTP Content-* headers. It is used by the hapijs framework to provide this functionality. The module is vulnerable to regular expression denial of service when passed a specifically crafted Content-Type or Content-Disposition header.
Remediation
References
https://nodesecurity.io/advisories/530
Related Vulnerabilities
CVE-2022-45206 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base-core
CVE-2022-35915 Vulnerability in maven package org.webjars.npm:openzeppelin__contracts-upgradeable
CVE-2020-15119 Vulnerability in maven package org.webjars.npm:auth0-lock
CVE-2018-14637 Vulnerability in maven package org.keycloak:keycloak-services
CVE-2015-0254 Vulnerability in maven package javax.servlet:jstl