CVE-2021-32012
published 2021-07-19CVE-2021-32012: SheetJS and SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (memory consumption) via a crafted .xlsx document that is mishandled when…
medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
SheetJS and SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (memory consumption) via a crafted .xlsx document that is mishandled when read by xlsx.js (issue 1 of 2).
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | rest_data_services | < 21.2.4 | 21.2.4 |
| sheetjs_project | sheetjs | <= 0.16.9 | — |
| sheetjs_project | sheetjs_pro | <= 0.16.9 | — |