VDB
KO
HIGH

GHSA-xf7r-hgr6-v32p

Multer vulnerable to Denial of Service via incomplete cleanup

Details

### Impact

A vulnerability in Multer versions < 2.1.0 allows an attacker to trigger a Denial of Service (DoS) by sending malformed requests, potentially causing resource exhaustion.

### Patches

Users should upgrade to `2.1.0`

### Workarounds

None

Are you affected?

Enter the version of the package you're using.

Affected packages

npm / multer
Introduced in: 0 Fixed in: 2.1.0
Fix npm install multer@2.1.0

References