QID 984082
QID 984082: Nodejs (npm) Security Update for content (GHSA-x6wp-rfwh-hcx7)
Affected versions of `content` are vulnerable to a regular expression denial of service when parsing malicious `Content-Type` and `Content-Disposition` headers. ## Recommendation Update to version 3.0.6 or later.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-x6wp-rfwh-hcx7 for updates pertaining to this vulnerability.
Vendor References
- GHSA-x6wp-rfwh-hcx7 -
github.com/advisories/GHSA-x6wp-rfwh-hcx7
CVEs related to QID 984082
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-x6wp-rfwh-hcx7 | content |
|