Description
protobufjs is vulnerable to ReDoS when parsing crafted invalid .proto files.
Remediation
References
https://hackerone.com/reports/319576
Related Vulnerabilities
CVE-2021-21344 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2021-3820 Vulnerability in npm package i
CVE-2022-2047 Vulnerability in maven package org.eclipse.jetty:jetty-http
CVE-2022-23223 Vulnerability in maven package org.apache.shenyu:shenyu-common
CVE-2020-8237 Vulnerability in maven package org.webjars.npm:json-bigint