Description
protobufjs is vulnerable to ReDoS when parsing crafted invalid .proto files.
Remediation
References
https://hackerone.com/reports/319576
Related Vulnerabilities
CVE-2020-15262 Vulnerability in npm package webpack-subresource-integrity
CVE-2022-25979 Vulnerability in npm package jsuites
CVE-2021-25329 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core
CVE-2022-21144 Vulnerability in npm package libxmljs
CVE-2020-1938 Vulnerability in maven package org.apache.tomcat:tomcat-coyote