Debian Node-Body-Parser vulnerabilities
2 known vulnerabilities affecting debian/node-body-parser.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1LOW1
Vulnerabilities
Page 1 of 1
CVE-2025-13466LOWCVSS 5.5fixed in node-body-parser 2.2.1+~1.19.6-1 (forky)2025
CVE-2025-13466 [MEDIUM] CVE-2025-13466: node-body-parser - body-parser 2.2.0 is vulnerable to denial of service due to inefficient handling...
body-parser 2.2.0 is vulnerable to denial of service due to inefficient handling of URL-encoded bodies with very large numbers of parameters. An attacker can send payloads containing thousands of parameters within the default 100KB request size limit, causing elevated CPU and memory usage. This can lead to service slowdown or partial outages under sustain
debian
CVE-2024-45590HIGHCVSS 7.5fixed in node-body-parser 1.20.3+~1.19.5-1 (forky)2024
CVE-2024-45590 [HIGH] CVE-2024-45590: node-body-parser - body-parser is Node.js body parsing middleware. body-parser <1.20.3 is vulnerabl...
body-parser is Node.js body parsing middleware. body-parser <1.20.3 is vulnerable to denial of service when url encoding is enabled. A malicious actor using a specially crafted payload could flood the server with a large number of requests, resulting in denial of service. This issue is patched in 1.20.3.
Scope: local
bookworm: open
bullseye: open
forky: res
debian