Undici is an HTTP/1.1 client,... CVE-2024-24750

- AV AC AU C I A
发布: 2024-02-16
修订: 2024-04-19

Undici is an HTTP/1.1 client, written from scratch for Node.js. In affected versions calling `fetch(url)` and not consuming the incoming body ((or consuming it very slowing) will lead to a memory leak. This issue has been addressed in version 6.6.1. Users are advised to upgrade. Users unable to upgrade should make sure to always consume the incoming body.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息