Description
atob 2.0.3 and earlier allocates uninitialized Buffers when number is passed in input on Node.js 4.x and below.
Remediation
References
https://hackerone.com/reports/321686
https://security.netapp.com/advisory/ntap-20230622-0009/
Related Vulnerabilities
CVE-2020-28270 Vulnerability in npm package object-hierarchy-access
CVE-2022-22965 Vulnerability in maven package org.springframework:spring-webflux
CVE-2021-23425 Vulnerability in npm package trim-off-newlines
CVE-2021-32855 Vulnerability in npm package vditor
CVE-2023-27479 Vulnerability in maven package org.xwiki.platform:xwiki-platform-panels-ui