Lucene search

K
nodejsAnonymousNODEJS:1767
HistoryJul 22, 2021 - 7:54 p.m.

Denial of Service

2021-07-2219:54:07
Anonymous
www.npmjs.com
64
sheetjs pro
cpu consumption
dos
.xlsx document
upgrade
version 0.17.0
vulnerability

EPSS

0.001

Percentile

30.1%

Overview

SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (CPU consumption) via a crafted .xlsx document that is mishandled when read by xlsx.js.

Recommendation

Upgrade to version 0.17.0 or later

References

EPSS

0.001

Percentile

30.1%