Description
atob 2.0.3 and earlier allocates uninitialized Buffers when number is passed in input on Node.js 4.x and below.
Remediation
References
https://hackerone.com/reports/321686
https://security.netapp.com/advisory/ntap-20230622-0009/
Related Vulnerabilities
CVE-2021-44906 Vulnerability in npm package minimist
CVE-2020-24660 Vulnerability in npm package node-lemonldap-ng-handler
CVE-2020-15366 Vulnerability in maven package org.webjars.npm:ajv
CVE-2022-24794 Vulnerability in npm package express-openid-connect
CVE-2021-21267 Vulnerability in npm package schema-inspector