Overview
Versions of canvas
prior to 1.6.10 are vulnerable to Denial of Service. Processing malicious JPEGs or GIFs could crash the node process.
Remediation
Upgrade to version 1.6.10
Resources
Have content suggestions? Visit npmjs.com/support.
Advisory timeline
published
Advisory PublishedApr 4th, 2019reported
Reported by Erlend OftedalApr 4th, 2019