PT-2026-22952 · Npm · Multer
CVSS v4.0
8.7
High
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Multer versions prior to 2.1.1
Description
A flaw exists in Multer, a node.js middleware used for processing
multipart/form-data. This issue can be exploited to cause a Denial of Service (DoS) by submitting specially crafted requests, which may lead to a stack overflow.Recommendations
Upgrade to version 2.1.1 to address the issue.
Exploit
Fix
DoS
Allocation of Resources Without Limits
Uncontrolled Recursion
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Multer