In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Allocation of Resources Without Limits or Throttling vulnerabilities in an interactive lesson.
Start learningUpgrade @hono/node-server to version 2.0.10 or higher.
@hono/node-server is a Node.js Adapter for Hono
Affected versions of this package are vulnerable to Allocation of Resources Without Limits or Throttling via the upgradeWebSocket. An attacker can cause unbounded memory consumption by sending repeated WebSocket upgrade requests with missing or malformed Sec-WebSocket-Key headers, resulting in permanent retention of request objects and eventual exhaustion of system memory.