Description
sshpk is vulnerable to ReDoS when parsing crafted invalid public keys.
Remediation
References
https://hackerone.com/reports/319593
Related Vulnerabilities
CVE-2020-36649 Vulnerability in maven package org.webjars.bower:papaparse
CVE-2017-5858 Vulnerability in npm package converse.js
CVE-2022-39266 Vulnerability in npm package isolated-vm
CVE-2020-28249 Vulnerability in npm package joplin
CVE-2020-15999 Vulnerability in maven package org.webjars.npm:electron