Description
sshpk is vulnerable to ReDoS when parsing crafted invalid public keys.
Remediation
References
https://hackerone.com/reports/319593
Related Vulnerabilities
CVE-2020-6468 Vulnerability in npm package electron
CVE-2020-2256 Vulnerability in maven package org.jenkins-ci.plugins:pipeline-maven-parent
CVE-2019-14653 Vulnerability in maven package org.webjars.npm:editor.md
CVE-2020-21122 Vulnerability in maven package com.bstek.ureport:ureport2-console
CVE-2012-5784 Vulnerability in maven package org.apache.axis:axis