Description
The parsejson module is vulnerable to regular expression denial of service when untrusted user input is passed into it to be parsed.
Remediation
References
https://github.com/get/parsejson/issues/4
https://nodesecurity.io/advisories/528
Related Vulnerabilities
CVE-2020-7642 Vulnerability in maven package org.webjars.npm:lazysizes
CVE-2023-26115 Vulnerability in maven package org.webjars.npm:word-wrap
CVE-2021-23632 Vulnerability in npm package git
CVE-2021-33611 Vulnerability in maven package org.webjars.bowergithub.vaadin:vaadin-menu-bar
CVE-2023-38889 Vulnerability in maven package org.alluxio:alluxio-core