QID 981160
QID 981160: Nodejs (npm) Security Update for xlsx (GHSA-3x9f-74h4-2fqr)
SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (memory consumption) via a crafted .xlsx document that is mishandled when read by xlsx.js (issue 1 of 2).
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-3x9f-74h4-2fqr for updates pertaining to this vulnerability.
Vendor References
- GHSA-3x9f-74h4-2fqr -
github.com/advisories/GHSA-3x9f-74h4-2fqr
CVEs related to QID 981160
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-3x9f-74h4-2fqr | xlsx |
|