Description
All versions of package lite-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control characters that the decodeURI() function is unable to parse.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-7561 | lite-server vulnerable to Denial of Service |
Github GHSA |
GHSA-89w7-5q45-r53w | lite-server vulnerable to Denial of Service |
References
History
Wed, 16 Apr 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-20 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2025-04-16T18:34:01.838Z
Reserved: 2022-02-24T00:00:00.000Z
Link: CVE-2022-25940
Updated: 2024-08-03T04:49:44.375Z
Status : Modified
Published: 2022-12-20T05:15:11.683
Modified: 2025-04-16T19:15:45.770
Link: CVE-2022-25940
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA