Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:33568
HistoryJan 10, 2022 - 3:58 a.m.

Denial Of Service (DoS)

2022-01-1003:58:40
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7
dos
vulnerability
http-handler.js
post request
crash
application

EPSS

0.002

Percentile

52.0%

@soketi/soketi is vulnerable to denial of service. The readJson function in http-handler.js does not properly handle an empty POST payload, allowing an attacker to crash the application by sending an empty POST request object.

EPSS

0.002

Percentile

52.0%

Related for VERACODE:33568