Fastify

Fastify

12 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.16%
  • Veröffentlicht 30.07.2020 13:15:11
  • Zuletzt bearbeitet 21.11.2024 05:38:28

A denial of service vulnerability exists in Fastify v2.14.1 and v3.0.0-rc.4 that allows a malicious user to trigger resource exhaustion (when the allErrors option is used) with specially crafted schemas.

Exploit
  • EPSS 1.8%
  • Veröffentlicht 07.06.2018 02:29:07
  • Zuletzt bearbeitet 21.11.2024 04:05:55

Fastify node module before 0.38.0 is vulnerable to a denial-of-service attack by sending a request with "Content-Type: application/json" and a very large payload.