Description
protobufjs is vulnerable to ReDoS when parsing crafted invalid .proto files.
Remediation
References
https://hackerone.com/reports/319576
Related Vulnerabilities
CVE-2022-25875 Vulnerability in npm package svelte
CVE-2022-48216 Vulnerability in npm package @uniswap/universal-router
CVE-2020-8131 Vulnerability in maven package org.webjars.npm:yarn
CVE-2022-41404 Vulnerability in maven package org.ini4j:ini4j
CVE-2022-40151 Vulnerability in maven package com.thoughtworks.xstream:xstream