Description
protobufjs is vulnerable to ReDoS when parsing crafted invalid .proto files.
Remediation
References
https://hackerone.com/reports/319576
Related Vulnerabilities
CVE-2021-33605 Vulnerability in maven package com.vaadin:vaadin-checkbox-flow
CVE-2018-3755 Vulnerability in npm package sexstatic
CVE-2021-28918 Vulnerability in npm package netmask
CVE-2020-36048 Vulnerability in npm package engine.io
CVE-2023-37911 Vulnerability in maven package org.xwiki.platform:xwiki-platform-oldcore