Description
The no-case module is vulnerable to regular expression denial of service. When malicious untrusted user input is passed into no-case it can block the event loop causing a denial of service condition.
Remediation
References
https://github.com/blakeembrey/no-case/issues/17
https://nodesecurity.io/advisories/529
Related Vulnerabilities
CVE-2019-10750 Vulnerability in npm package deeply
CVE-2016-10546 Vulnerability in npm package pouchdb
CVE-2021-23784 Vulnerability in npm package tempura
CVE-2021-29505 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2023-6886 Vulnerability in maven package com.xnx3.wangmarket:wangmarket