Description
Uncontrolled resource consumption in `jpeg-js` before 0.4.0 may allow attacker to launch denial of service attacks using specially a crafted JPEG image.
Remediation
References
https://hackerone.com/reports/842462
Related Vulnerabilities
CVE-2020-36187 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2021-43308 Vulnerability in npm package markdown-link-extractor
CVE-2019-10785 Vulnerability in maven package org.webjars.bower:dojox
CVE-2023-33725 Vulnerability in maven package org.broadleafcommerce:broadleaf