This affects the package jspdf before 2.3.1. ReDoS is possible via the addImage function.
Link | Tags |
---|---|
https://snyk.io/vuln/SNYK-JS-JSPDF-1073626 | third party advisory |
https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSNPM-1083286 | third party advisory |
https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSBOWER-1083287 | third party advisory |
https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSBOWERGITHUBMRRIO-1083288 | third party advisory |
https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARS-1083289 | third party advisory |
https://github.com/MrRio/jsPDF/commit/d8bb3b39efcd129994f7a3b01b632164144ec43e | third party advisory patch |
https://github.com/MrRio/jsPDF/pull/3091 | third party advisory patch |