CVE-2025-55152

oak is a middleware framework for Deno's native HTTP server, Deno Deploy, Node.js 16.5 and later, Cloudflare Workers and Bun. In versions 17.1.5 and below, it's possible to significantly slow down an oak server with specially crafted values of the x-forwarded-proto or x-forwarded-for headers.
CVSS

No CVSS.

Configurations

No configuration.

History

09 Aug 2025, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-09 02:15

Updated : 2025-08-09 02:15


NVD link : CVE-2025-55152

Mitre link : CVE-2025-55152


JSON object : View

Products Affected

No product.

CWE
CWE-1333

Inefficient Regular Expression Complexity

CWE-400

Uncontrolled Resource Consumption