2.0.2
11 years ago
2 months ago
Known vulnerabilities in the multer package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
Affected versions of this package are vulnerable to Uncaught Exception due to improper handling of multipart requests. An attacker can cause the application to crash by sending a specially crafted malformed multi-part upload request that triggers an unhandled exception. How to fix Uncaught Exception? Upgrade | >=1.4.4-lts.1 <2.0.2 |
Affected versions of this package are vulnerable to Uncaught Exception in How to fix Uncaught Exception? Upgrade | <2.0.1 |
Affected versions of this package are vulnerable to Uncaught Exception due to an How to fix Uncaught Exception? Upgrade | <2.0.0 |
Affected versions of this package are vulnerable to Missing Release of Memory after Effective Lifetime due to improper handling of error events in HTTP request streams, which fails to close the internal Note: This is only exploitable if the server is handling file uploads. How to fix Missing Release of Memory after Effective Lifetime? Upgrade | <2.0.0 |