CVE-2022-24375
24.08.2022, 05:15
The package node-opcua before 2.74.0 are vulnerable to Denial of Service (DoS) when bypassing the limitations for excessive memory consumption by sending multiple CloseSession requests with the deleteSubscription parameter equal to False.Enginsight
| Vendor | Product | Version |
|---|---|---|
| node-opcua_project | node-opcua | 𝑥 < 2.74.0 |
𝑥
= Vulnerable software versions
References