Description
The no-case module is vulnerable to regular expression denial of service. When malicious untrusted user input is passed into no-case it can block the event loop causing a denial of service condition.
Remediation
References
https://github.com/blakeembrey/no-case/issues/17
https://nodesecurity.io/advisories/529
Related Vulnerabilities
CVE-2018-3772 Vulnerability in npm package whereis
CVE-2022-36944 Vulnerability in maven package org.scala-lang:scala-library
CVE-2021-26540 Vulnerability in maven package org.webjars.npm:sanitize-html
CVE-2021-25924 Vulnerability in maven package cd.go.plugin:go-plugin-api
CVE-2019-1003025 Vulnerability in maven package org.jenkins-ci.plugins:cloudfoundry