Skip to content

[GHSA-g9mf-h72j-4rw9] undici@7.16.0: Unbounded decompression chain #113

@nthmost-orkes

Description

@nthmost-orkes

Vulnerability Report

CVE Library Installed Fixed
GHSA-g9mf-h72j-4rw9 undici 7.16.0 6.23.0

Summary

Undici has an unbounded decompression chain in HTTP responses on Node.js Fetch API.

References

Metadata

Metadata

Assignees

No one assigned

    Labels

    securitySecurity-related issuesvulnerabilityDependency vulnerability

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions