Description
Those using HtmlUnit to browse untrusted webpages may be vulnerable to Denial of service attacks (DoS). If HtmlUnit is running on user supplied web pages, an attacker may supply content that causes HtmlUnit to crash by a stack overflow. This effect may support a denial of service attack.This issue affects htmlunit before 2.70.0.
Remediation
References
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=54613
https://github.com/HtmlUnit/htmlunit/commit/940dc7fd
Related Vulnerabilities
CVE-2019-10423 Vulnerability in maven package com.villagechief.codescan.jenkins:codescan
CVE-2013-4590 Vulnerability in maven package org.apache.tomcat:tomcat-catalina
CVE-2020-2220 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2014-0073 Vulnerability in npm package cordova-plugin-inappbrowser
CVE-2019-16943 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind