Skip to content

1084:mem:Denial of Service #21

@ambergkim

Description

@ambergkim

No CVE
CWE CWE-400
References: - Snyk Report
Versions of mem prior to 4.0.0 are vulnerable to Denial of Service (DoS). The package fails to remove old values from the cache even after a value passes its maxAge property. This may allow attackers to exhaust the system's memory if they are able to abuse the application logging.
@ambergkim

Metadata

Metadata

Assignees

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions