Security Advisory

CVE-2022-25940

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-12-21 01:21:43
Last updated 2025-04-16 18:34:01
Assigner snyk
State PUBLISHED

Description

All versions of package lite-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control characters that the decodeURI() function is unable to parse.