QID 984036
QID 984036: Nodejs (npm) Security Update for method-override (GHSA-qx2f-477c-35rq)
Affected versions of `method-override` are vulnerable to a regular expression denial of service vulnerability when untrusted user input is passed into the `X-HTTP-Method-Override` header. ## Recommendation Update to version 2.3.10 or later
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-qx2f-477c-35rq for updates pertaining to this vulnerability.
Vendor References
- GHSA-qx2f-477c-35rq -
github.com/advisories/GHSA-qx2f-477c-35rq
CVEs related to QID 984036
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-qx2f-477c-35rq | method-override |
|