Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-24006

Опубликовано: 22 янв. 2026
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

Seroval facilitates JS value stringification, including complex structures beyond JSON.stringify capabilities. In versions 1.4.0 and below, serialization of objects with extreme depth can exceed the maximum call stack limit. In version 1.4.1, Seroval introduces a depthLimit parameter in serialization/deserialization methods. An error will be thrown if the depth limit is reached.

EPSS

Процентиль: 14%
0.00047
Низкий

7.5 High

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 7.5
github
16 дней назад

Seroval affected by Denial of Service via Deeply Nested Objects

EPSS

Процентиль: 14%
0.00047
Низкий

7.5 High

CVSS3

Дефекты

CWE-770