proxy@0.2.4 vulnerabilities

An HTTP proxy written with Node.js (think Squid)

Direct Vulnerabilities

Known vulnerabilities in the proxy package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • H
Improper Handling of Undefined Values

proxy is an An HTTP proxy written with Node.js (think Squid)

Affected versions of this package are vulnerable to Improper Handling of Undefined Values which allows the attacker to trigger a denial of service via the socket.remoteAddress variable. Exploiting this vulnerability is possible by sending a crafted HTTP request.

How to fix Improper Handling of Undefined Values?

Upgrade proxy to version 2.1.1 or higher.

<2.1.1