QID 980514
QID 980514: Nodejs (npm) Security Update for mongo-express (GHSA-m2r3-8492-vx59)
All versions of package mongo-express are vulnerable to Denial of Service (DoS) when exporting an empty collection as CSV, due to an unhandled exception, leading to a crash.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-m2r3-8492-vx59 for updates pertaining to this vulnerability.
Vendor References
- GHSA-m2r3-8492-vx59 -
github.com/advisories/GHSA-m2r3-8492-vx59
CVEs related to QID 980514
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-m2r3-8492-vx59 | mongo-express |
|