Description
The mime module < 1.4.1, 2.0.1, 2.0.2 is vulnerable to regular expression denial of service when a mime lookup is performed on untrusted user input.
Remediation
References
https://github.com/broofa/node-mime/issues/167
https://nodesecurity.io/advisories/535
Related Vulnerabilities
CVE-2023-39345 Vulnerability in npm package @strapi/strapi
CVE-2020-11987 Vulnerability in maven package org.apache.xmlgraphics:batik-svgbrowser
CVE-2022-25852 Vulnerability in npm package pg-native
CVE-2019-10773 Vulnerability in npm package @pnpm/package-bins
CVE-2020-7660 Vulnerability in npm package serialize-javascript