-
Notifications
You must be signed in to change notification settings - Fork 0
Open
Description
No CVE
CWE CWE-400
References: - Snyk Report
Versions of mem prior to 4.0.0 are vulnerable to Denial of Service (DoS). The package fails to remove old values from the cache even after a value passes its maxAge property. This may allow attackers to exhaust the system's memory if they are able to abuse the application logging.
@ambergkim