nuxt is vulnerable to Denial of Service (DoS)
75
High Risk
Nuxt is vulnerable to a denial-of-service (DoS) issue in server component rendering. An unauthenticated attacker can supply excessively large values to v-for loops in server islands, causing the server to allocate excessive memory during server-side rendering and potentially crash due to out-of-memory conditions. A single, small request can be sufficient to exhaust server resources.
You are affected if you are using a version that falls within the vulnerable range and your application renders server islands or server components that iterate a v-for over an externally influenced prop..
nuxt is vulnerable to Denial of Service (DoS) in versions 3.1.0 - 3.21.9 and 4.0.0 - 4.5.0.
Upgrade to a patched version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant