Vulnerabilities
Last updated 1 hour ago
| Package | Summary | Severity | Published | Modified |
|---|---|---|---|---|
|
|
Astro: Malformed port in the Host header can crash the Node adapter | High Risk 8.0 | 8 hours ago | 8 hours ago |
|
|
@astrojs/node: Backslash-prefixed paths not recognized as internal by trailing-slash redirect | Low Risk 3.0 | 2 months ago | 1 month ago |
|
|
Astro: Cache Poisoning due to incorrect error handling when if-match header is malformed | Medium Risk 5.3 | 5 months ago | 4 months ago |
|
|
Astro has Full-Read SSRF in error rendering via Host: header injection | High Risk 8.6 | 7 months ago | 6 months ago |
|
|
Astro: Memory exhaustion DoS due to missing request body size limit in Server Islands | Medium Risk 5.9 | 6 months ago | 6 months ago |
|
|
Astro is vulnerable to SSRF due to missing allowlist enforcement in remote image inferSize | Medium Risk 6.5 | 7 months ago | 7 months ago |
|
|
Astro has memory exhaustion DoS due to missing request body size limit in Server Actions | Medium Risk 5.9 | 7 months ago | 7 months ago |
|
|
Astro allows unauthorized third-party images in _image endpoint | Medium Risk 6.1 | 1 year ago | 10 months ago |
|
|
@astrojs/node's trailing slash handling causes open redirect issue | Medium Risk 6.0 | 1 year ago | 1 year ago |
Page 1