Описание
lite-server vulnerable to Denial of Service
All versions of package lite-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control characters that the decodeURI() function is unable to parse.
Пакеты
Наименование
lite-server
npm
Затронутые версииВерсия исправления
<= 2.6.1
Отсутствует
Наименование
org.webjars.npm:lite-server
maven
Затронутые версииВерсия исправления
<= 2.2.0
Отсутствует
Связанные уязвимости
CVSS3: 7.5
nvd
около 3 лет назад
All versions of package lite-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control characters that the decodeURI() function is unable to parse.