Description
Uncontrolled resource consumption in `jpeg-js` before 0.4.0 may allow attacker to launch denial of service attacks using specially a crafted JPEG image.
Remediation
References
https://hackerone.com/reports/842462
Related Vulnerabilities
CVE-2018-1002204 Vulnerability in maven package org.webjars:adm-zip
CVE-2020-28498 Vulnerability in npm package elliptic
CVE-2016-1000282 Vulnerability in npm package haraka
CVE-2022-4245 Vulnerability in maven package org.codehaus.plexus:plexus-utils
CVE-2020-7763 Vulnerability in npm package phantom-html-to-pdf