Description
The parsejson module is vulnerable to regular expression denial of service when untrusted user input is passed into it to be parsed.
Remediation
References
https://github.com/get/parsejson/issues/4
https://nodesecurity.io/advisories/528
Related Vulnerabilities
CVE-2020-36649 Vulnerability in maven package org.webjars.bower:papaparse
CVE-2022-0198 Vulnerability in maven package edu.stanford.nlp:stanford-corenlp
CVE-2022-39230 Vulnerability in npm package fhir-works-on-aws-authz-smart
CVE-2020-8176 Vulnerability in npm package koa-shopify-auth
CVE-2022-22965 Vulnerability in maven package org.springframework:spring-webmvc