request-filtering-agent
npm2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting request-filtering-agentpage 1 of 1
- CVE-2025-57814MEDIUMCVSS 5.5EG 5.5fixed in 2.0.02025-08-25
request-filtering-agent is an http(s).Agent implementation that blocks requests to Private/Reserved IP addresses. Versions 1.x.x and earlier contain a vulnerability where HTTPS requests to 127.0.0.1 bypass IP address filtering, while HTTP …
- CVE-2026-62985HIGHCVSS 7.5EG 7.5fixed in 3.2.12026-09-22
request-filtering-agent is an http(s).Agent implementation that blocks requests to Private/Reserved IP addresses. Prior to 3.2.1, RequestFilteringHttpAgent and RequestFilteringHttpsAgent synchronously threw from createConnection when rejec…
Check whether request-filtering-agent is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for request-filtering-agent CVEs against the assets you own.
Book a Demo →