Description
All versions of package mongo-express are vulnerable to Denial of Service (DoS) when exporting an empty collection as CSV, due to an unhandled exception, leading to a crash.
Remediation
References
https://snyk.io/vuln/SNYK-JS-MONGOEXPRESS-1085403
Related Vulnerabilities
CVE-2015-8315 Vulnerability in maven package org.webjars.npm:ms
CVE-2017-12621 Vulnerability in maven package commons-jelly:commons-jelly
CVE-2019-12043 Vulnerability in npm package remarkable
CVE-2018-11698 Vulnerability in npm package node-sass
CVE-2020-6463 Vulnerability in maven package org.webjars.npm:electron