Vulnerabilities/

DoS due to excessively large websocket message in ws

Severity:
High

Description

Affected versions of ws do not appropriately limit the size of incoming websocket payloads, which may result in a denial of service condition when the node process crashes after receiving a large payload.

Recommendation

Update the ws package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
ws
Anything's wrong? Let us know Last updated on January 09, 2023

This issue is available in SmartScanner Professional

See Pricing