CVE-2020-7693

Published
View on NVD ↗
CVSS v3
5.3
MEDIUM
CVSS v2
5
MEDIUM
Affected
2
PROJECTS

Description

Incorrect handling of Upgrade header with the value websocket leads in crashing of containers hosting sockjs apps. This affects the package sockjs before 0.3.20.

WebSocket emulation - Node.js server
GitHubGitHub
2.1K
CVE-2020-7693: SockJS 0.3.19 Denial of Service POC
GitHubGitHub
1