A remote attacker can trigger a denial of service in the socket.remoteAddress variable, by sending a crafted HTTP request. Usage of the undefined variable raises a TypeError exception.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| proxy(npm) | 2.0.0 | 2.1.1 | N/A |
CVSS Metrics