VYPR
Medium severity4.4NVD Advisory· Published Apr 13, 2021· Updated Jun 17, 2026

CVE-2021-23372

CVE-2021-23372

Description

All versions of package mongo-express are vulnerable to Denial of Service (DoS) when exporting an empty collection as CSV, due to an unhandled exception, leading to a crash.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
mongo-expressnpm
<= 0.54.0

Affected products

3

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.