@cap-js/hana is vulnerable to Denial of Service (DoS)
42
Medium Risk
Affected versions of this package are vulnerable to denial of service due to improper handling of invalid credentials during connection pool failures. The service manager repeatedly attempts to fetch and use invalid credentials without triggering backoff logic, which can cause excessive requests and lead to service disruption.
You are affected if you are using a version that falls within the vulnerable range.
@cap-js/hana is vulnerable to Denial of Service (DoS) in versions 1.3.1 - 2.5.1.
Upgrade the @cap-js/hana library to the patch version.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant