@sveltejs/kit@2.2.2 vulnerabilities

SvelteKit is the fastest way to build Svelte apps

Direct Vulnerabilities

Known vulnerabilities in the @sveltejs/kit package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • H
Denial of Service (DoS)

@sveltejs/kit is a SvelteKit framework and CLI

Affected versions of this package are vulnerable to Denial of Service (DoS) when sending a GET or HEAD request with a body, which is not supported by the HTTP specification. An attacker can cause the application to crash by sending such a request.

How to fix Denial of Service (DoS)?

Upgrade @sveltejs/kit to version 2.4.3 or higher.

>=2.0.0 <2.4.3