Количество 3
Количество 3
CVE-2026-34404
Nuxt OG Image generates OG Images with Vue templates in Nuxt. Prior to version 6.2.5, the image‑generation component by the URI: /_og/d/ (and, in older versions, /og-image/) contains a Denial of Service (DoS) vulnerability. The issue arises because there is no restriction on the width and height parameters of the generated image. The vulnerability was reproduced using the standard configuration and the default templates. This issue has been patched in version 6.2.5.
GHSA-c7xp-q6q8-hg76
Nuxt OG Image is vulnerable to Denial of Service via unbounded image dimensions
BDU:2026-05337
Уязвимость компонента /_og/d/ модуля генерации Open Graph (OG) изображений Nuxt OG Image фреймворка для создания веб-приложений и сайтов Nuxt.js, позволяющая нарушителю вызвать отказ в обслуживании
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-34404 Nuxt OG Image generates OG Images with Vue templates in Nuxt. Prior to version 6.2.5, the image‑generation component by the URI: /_og/d/ (and, in older versions, /og-image/) contains a Denial of Service (DoS) vulnerability. The issue arises because there is no restriction on the width and height parameters of the generated image. The vulnerability was reproduced using the standard configuration and the default templates. This issue has been patched in version 6.2.5. | CVSS3: 7.5 | 0% Низкий | 4 месяца назад | |
GHSA-c7xp-q6q8-hg76 Nuxt OG Image is vulnerable to Denial of Service via unbounded image dimensions | 0% Низкий | 4 месяца назад | ||
BDU:2026-05337 Уязвимость компонента /_og/d/ модуля генерации Open Graph (OG) изображений Nuxt OG Image фреймворка для создания веб-приложений и сайтов Nuxt.js, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад |
Уязвимостей на страницу