thewindghost

1 exploit Active since Jul 2020
CVE-2020-7693 NOMISEC MEDIUM WORKING POC
sockjs < 0.3.20 - Denial of Service via Upgrade Header
Incorrect handling of Upgrade header with the value websocket leads in crashing of containers hosting sockjs apps. This affects the package sockjs before 0.3.20.
CVSS 5.3