CVE-2025-55152

oak is a middleware framework for Deno's native HTTP server, Deno Deploy, Node.js 16.5 and later, Cloudflare Workers and Bun. In versions 17.1.5 and below, it's possible to significantly slow down an oak server with specially crafted values of the x-forwarded-proto or x-forwarded-for headers.
Configurations

No configuration.

History

11 Aug 2025, 18:32

Type Values Removed Values Added
Summary
  • (es) oak es un framework de middleware para el servidor HTTP nativo de Deno, Deno Deploy, Node.js 16.5 y versiones posteriores, Cloudflare Workers y Bun. En las versiones 17.1.5 y anteriores, es posible ralentizar significativamente un servidor oak con valores especialmente manipulados de los encabezados x-forwarded-proto o x-forwarded-for.

09 Aug 2025, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-09 02:15

Updated : 2025-08-11 18:32


NVD link : CVE-2025-55152

Mitre link : CVE-2025-55152

CVE.ORG link : CVE-2025-55152


JSON object : View

Products Affected

No product.

CWE
CWE-400

Uncontrolled Resource Consumption

CWE-1333

Inefficient Regular Expression Complexity