All versions of the package lite-web-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control characters that the decodeURI() function is unable to parse.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: snyk

Published: 2023-02-25T05:00:02.786Z

Updated: 2023-02-25T05:00:02.786Z

Reserved: 2023-02-20T10:28:48.921Z


Link: CVE-2023-26104

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-02-25T05:15:12.487

Modified: 2023-11-07T04:09:20.573


Link: CVE-2023-26104

JSON object: View

cve-icon Redhat Information

No data.

CWE