logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-21536

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-21536

Description:
Versions of the package http-proxy-middleware before 2.0.7, from 3.0.0 and before 3.0.3 are vulnerable to Denial of Service (DoS) due to an UnhandledPromiseRejection error thrown by micromatch. An attacker could kill the Node.js process and crash the server by making requests to certain paths.
Last updated date:
11/01/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
11/01/2024
Reference url to background

https://gist.github.com/mhassan1/28be67266d82a53708ed59ce5dc3c94a

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2026

Privacy Policy