Description
Incorrect parsing of certain JSON input may result in js-bson not correctly serializing BSON. This may cause unexpected application behaviour including data disclosure. This issue affects: MongoDB Inc. js-bson library version 1.1.3 and prior to.
Remediation
References
https://github.com/mongodb/js-bson/releases/tag/v1.1.4
Related Vulnerabilities
CVE-2019-8331 Vulnerability in npm package bootstrap
CVE-2022-25927 Vulnerability in maven package org.webjars.npm:github-com-faisalman-ua-parser-js
CVE-2020-6950 Vulnerability in maven package org.glassfish:jakarta.faces
CVE-2018-3785 Vulnerability in npm package git-dummy-commit
CVE-2023-47324 Vulnerability in maven package org.silverpeas.core:silverpeas-core-web