Description
Uncontrolled resource consumption in `jpeg-js` before 0.4.0 may allow attacker to launch denial of service attacks using specially a crafted JPEG image.
Remediation
References
https://hackerone.com/reports/842462
Related Vulnerabilities
CVE-2023-3276 Vulnerability in maven package cn.hutool:hutool-core
CVE-2022-29631 Vulnerability in maven package org.jodd:jodd-http
CVE-2023-23848 Vulnerability in maven package org.jenkins-ci.plugins:synopsys-coverity
CVE-2021-25945 Vulnerability in npm package js-extend
CVE-2021-46708 Vulnerability in maven package org.webjars.bower:swagger-ui