Description
atob 2.0.3 and earlier allocates uninitialized Buffers when number is passed in input on Node.js 4.x and below.
Remediation
References
https://hackerone.com/reports/321686
https://security.netapp.com/advisory/ntap-20230622-0009/
Related Vulnerabilities
CVE-2020-28282 Vulnerability in maven package org.webjars.npm:getobject
CVE-2019-11358 Vulnerability in npm package jquery
CVE-2023-42278 Vulnerability in maven package cn.hutool:hutool-core
CVE-2022-2191 Vulnerability in maven package org.eclipse.jetty:jetty-server
CVE-2021-25329 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core