QID 981197
QID 981197: Java (maven) Security Update for org.webjars.npm:xlsx (GHSA-8vcr-vxm8-293m)
SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (memory consumption) via a crafted .xlsx document that is mishandled when read by xlsx.js (issue 2 of 2).
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-8vcr-vxm8-293m for updates pertaining to this vulnerability.
Vendor References
- GHSA-8vcr-vxm8-293m -
github.com/advisories/GHSA-8vcr-vxm8-293m
CVEs related to QID 981197
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-8vcr-vxm8-293m | org.webjars.npm:xlsx |
|