Description
sshpk is vulnerable to ReDoS when parsing crafted invalid public keys.
Remediation
References
https://hackerone.com/reports/319593
Related Vulnerabilities
CVE-2023-22465 Vulnerability in maven package org.http4s:http4s-core_2.13
CVE-2018-16487 Vulnerability in maven package org.webjars:lodash
CVE-2023-22465 Vulnerability in maven package org.http4s:http4s-core_2.12
CVE-2023-22465 Vulnerability in maven package org.http4s:http4s-core_2.13
CVE-2022-36083 Vulnerability in npm package jose-browser-runtime