Description
All versions of package mongo-express are vulnerable to Denial of Service (DoS) when exporting an empty collection as CSV, due to an unhandled exception, leading to a crash.
Remediation
References
https://snyk.io/vuln/SNYK-JS-MONGOEXPRESS-1085403
Related Vulnerabilities
CVE-2020-2257 Vulnerability in maven package org.jenkins-ci.plugins:validating-string-parameter
CVE-2018-20676 Vulnerability in npm package bootstrap-sass
CVE-2017-16042 Vulnerability in maven package org.webjars.npm:growl
CVE-2020-15149 Vulnerability in npm package nodebb
CVE-2017-7667 Vulnerability in maven package org.apache.nifi:nifi