Описание
Denial of Service vulnerability in lite-web-server
All versions of the package lite-web-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control characters that the decodeURI() function is unable to parse.
Пакеты
Наименование
lite-web-server
npm
Затронутые версииВерсия исправления
<= 1.2.2
Отсутствует
Связанные уязвимости
CVSS3: 7.5
nvd
почти 3 года назад
All versions of the package lite-web-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control characters that the decodeURI() function is unable to parse.