GHSA-2g7p-5934-q4w7High
Payload: ReDoS in Multipart Content-Type Validation
🔗 CVE IDs covered (1)
📋 Description
Impact
A malformed multipart request body could take an extremely long time to finish.
Patches
Users should upgrade Payload packages to >= 3.90.0 or >= 4.0.0-canary.34.
🎯 Affected products2
- npm/payload:>= 3.0.0, < 3.90.0
- npm/payload:>= 4.0.0-canary.0, < 4.0.0-canary.34