Description
decode-uri-component 0.2.0 is vulnerable to Improper Input Validation resulting in DoS.
Recommendation
Update the decode-uri-component package to the latest compatible version. Followings are version details:
- Affected version(s): < 0.2.1
- Patched version(s): 0.2.1
References
Related Issues
- Cube Core is vulnerable to Denial of Service (DoS) via crafted request - CVE-2026-25957
- jsPDF Vulnerable to Denial of Service (DoS) via Unvalidated BMP Dimensions in BMPDecoder - CVE-2026-24133
- steal vulnerable to Regular Expression Denial of Service via input variable - CVE-2022-37260
- steal vulnerable to Regular Expression Denial of Service via source and sourceWithComments - CVE-2022-37262
You might also like:
- Tags:
- npm
- decode-uri-component
Anything's wrong? Let us know Last updated on September 21, 2023


