multer is vulnerable to Uncaught Exception
75
High Risk
Multer is a node.js middleware for handling multipart/form-data. A vulnerability that is present starting in version 1.4.4-lts.1 and prior to version 2.0.0 allows an attacker to trigger a Denial of Service (DoS) by sending a malformed multi-part upload request. This request causes an unhandled exception, leading to a crash of the process. Users should upgrade to version 2.0.0 to receive a patch. No known workarounds are available.
You are affected if you are using a version that falls within the vulnerable range.
multer is vulnerable to Uncaught Exception in versions 1.4.4-lts.1 - 1.4.5-lts.2 and 1.4.4-lts.1 - 1.4.5-lts.1.
Upgrade the Multer library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant