Description
All versions of package mongo-express are vulnerable to Denial of Service (DoS) when exporting an empty collection as CSV, due to an unhandled exception, leading to a crash.
Remediation
References
https://snyk.io/vuln/SNYK-JS-MONGOEXPRESS-1085403
Related Vulnerabilities
CVE-2018-3721 Vulnerability in maven package org.webjars.bowergithub.lodash:lodash
CVE-2022-1243 Vulnerability in npm package urijs
CVE-2018-19048 Vulnerability in npm package simditor
CVE-2020-28277 Vulnerability in maven package org.webjars.npm:dset
CVE-2018-7408 Vulnerability in maven package org.webjars:npm