Fastify / Fastify-Multipart
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-19474 | @fastify/multipart vulnerable to Denial of Service via temporary file leak on aborted upload | HIGH | 7.5 | Aug 15, 2026 |
| CVE-2026-18549 | @fastify/multipart vulnerable to Denial of Service via aborted upload after fileSize limit | HIGH | 7.5 | Aug 15, 2026 |
| CVE-2025-24033 | @fastify/multipart vulnerable to unlimited consumption of resources | HIGH | 7.5 | Jan 23, 2025 |
| CVE-2023-25576 | @fastify/multipart vulnerable to DoS due to unlimited number of parts | HIGH | 7.5 | Feb 14, 2023 |
| CVE-2021-23597 | Denial of Service (DoS) | HIGH | 7.5 | Feb 11, 2022 |
| CVE-2020-8136 | Prototype pollution vulnerability in fastify-multipart < 1.0.5 allows an attacker to crash fastify applications parsing multipart requests by sending a special… | MEDIUM | 7.5 | Mar 20, 2020 |
Showing 1 to 6 of 6 CVEs