CVE-2020-7699

Publication date

2020-07-30 09:05:14

Family

snyk

State

PUBLISHED

Description

This affects the package express-fileupload before 1.1.8. If the parseNested option is enabled, sending a corrupt HTTP request can lead to denial of service or arbitrary code execution.