CVE-2022-25881

CVSS V2 None CVSS V3 None
Description
This affects versions of the package http-cache-semantics before 4.1.1. The issue can be exploited via malicious request header values sent to a server, when that server reads the cache policy from the request using this library.
Overview
  • CVE ID
  • CVE-2022-25881
  • Assigner
  • report@snyk.io
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-01-31T05:15:11
  • Last Modified Date
  • 2023-02-07T17:07:53
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:http-cache-semantics_project:http-cache-semantics:*:*:*:*:*:node.js:*:* 1 OR 4.1.1
History
Created Old Value New Value Data Type Notes
2023-04-17 06:59:23 Added to TrackCVE
2023-04-17 06:59:25 Weakness Enumeration new