CVE-2021-32012

SheetJS and SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (memory consumption) via a crafted .xlsx document that is mishandled when read by xlsx.js (issue 1 of 2).
References
Configurations

Configuration 1

cpe:2.3:a:sheetjs_project:sheetjs:*:*:*:*:*:node.js:*:*
cpe:2.3:a:sheetjs_project:sheetjs_pro:*:*:*:*:*:node.js:*:*
cpe:2.3:a:oracle:rest_data_services:*:*:*:*:*:*:*:*

Information

Published : 2021-07-19 02:15

Updated : 2022-02-28 08:46


NVD link : CVE-2021-32012

Mitre link : CVE-2021-32012

Products Affected
No products.
CWE