A vulnerability has been identified in the Express response.links function, allowing for arbitrary resource injection in the Link header when unsanitized data is used. The issue arises from improper sanitization in `Link` header values, which can allow a combination of characters like `,`, `;`, and `<>` to preload malicious resources. This vulnerability is especially relevant for dynamic parameters.
History

Wed, 06 Nov 2024 23:30:00 +0000

Type Values Removed Values Added
First Time appeared Openjsf
Openjsf express
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:openjsf:express:*:*:*:*:*:node.js:*:*
Vendors & Products Openjsf
Openjsf express

Wed, 30 Oct 2024 01:45:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

threat_severity

Moderate


Tue, 29 Oct 2024 20:15:00 +0000

Type Values Removed Values Added
First Time appeared Expressjs
Expressjs express
CPEs cpe:2.3:a:expressjs:express:*:*:*:*:*:*:*:*
Vendors & Products Expressjs
Expressjs express
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 29 Oct 2024 16:30:00 +0000

Type Values Removed Values Added
Description A vulnerability has been identified in the Express response.links function, allowing for arbitrary resource injection in the Link header when unsanitized data is used. The issue arises from improper sanitization in `Link` header values, which can allow a combination of characters like `,`, `;`, and `<>` to preload malicious resources. This vulnerability is especially relevant for dynamic parameters.
Title Preload arbitrary resources by injecting additional `Link` headers
Weaknesses CWE-74
References
Metrics cvssV3_1

{'score': 4, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: HeroDevs

Published: 2024-10-29T16:23:21.219Z

Updated: 2024-10-29T19:44:30.890Z

Reserved: 2024-10-29T11:53:00.416Z

Link: CVE-2024-10491

cve-icon Vulnrichment

Updated: 2024-10-29T19:44:25.247Z

cve-icon NVD

Status : Analyzed

Published: 2024-10-29T17:15:03.853

Modified: 2024-11-06T23:08:49.780

Link: CVE-2024-10491

cve-icon Redhat

Severity : Moderate

Publid Date: 2024-10-29T16:23:21Z

Links: CVE-2024-10491 - Bugzilla