CVE-2024-24750

CVSS V2 None CVSS V3 None
Description
Undici is an HTTP/1.1 client, written from scratch for Node.js. In affected versions calling `fetch(url)` and not consuming the incoming body ((or consuming it very slowing) will lead to a memory leak. This issue has been addressed in version 6.6.1. Users are advised to upgrade. Users unable to upgrade should make sure to always consume the incoming body.
Overview
  • CVE ID
  • CVE-2024-24750
  • Assigner
  • GitHub_M
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-02-16T21:42:29.999Z
  • Last Modified Date
  • 2024-02-16T21:42:29.999Z
History
Created Old Value New Value Data Type Notes
2024-06-26 04:05:16 Added to TrackCVE