Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-7008 | fastify is a fast and low overhead web framework, for Node.js. Affected versions of fastify are subject to a denial of service via malicious use of the Content-Type header. An attacker can send an invalid Content-Type header that can cause the application to crash. This issue has been addressed in commit `fbb07e8d` and will be included in release version 4.8.1. Users are advised to upgrade. Users unable to upgrade may manually filter out http content with malicious Content-Type headers. |
Github GHSA |
GHSA-455w-c45v-86rg | fastify vulnerable to denial of service via malicious Content-Type |
Wed, 23 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-04-23T16:51:56.095Z
Reserved: 2022-09-02T00:00:00.000Z
Link: CVE-2022-39288
Updated: 2024-08-03T12:00:43.799Z
Status : Modified
Published: 2022-10-10T21:15:11.300
Modified: 2024-11-21T07:17:57.870
Link: CVE-2022-39288
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA