Rewterz
Rewterz Threat Alert – Quasar RAT – Active IOCs
June 29, 2022
Rewterz
Rewterz Threat Alert – Agent Tesla Malware – Active IOCs
June 29, 2022

Rewterz Threat Advisory –CVE-2022-31103 – Node.js lettersanitizer module Vulnerability

Severity

Medium

Analysis Summary

CVE-2022-31103

Node.js lettersanitizer module is vulnerable to a denial of service, caused by improper handling of CSS at-rules. By sending a specially-crafted request, a remote attacker could exploit this vulnerability to cause a denial of service.

Impact

  • Denial of Service

Indicators Of Compromise

CVE

  • CVE-2022-31103

Affected Vendors

  • Node.js

Affected Products

  • Node.js lettersanitizer 1.0.1

Remediation

Upgrade to the latest version of Node.js lettersanitizer module, available from the NPM Web site.

NPM Website