andsnw/sockjs-dos-py

andsnw/sockjs-dos-py

Releases0
Stars1
CVE-2020-7693: SockJS 0.3.19 Denial of Service POC

CVE History

CVEPublishedCVSS v3CVSS v2
5.3 MEDIUM5 MEDIUM

Incorrect handling of Upgrade header with the value websocket leads in crashing of containers hosting sockjs apps. This affects the package sockjs before 0.3.20.