CVE-2026-48937 - Node.js HTTP/2 Denial of Service
CVE ID :CVE-2026-48937
Published : June 18, 2026, 6:01 p.m. | 3 hours, 37 minutes ago
Description :A flaw in Node.js HTTP/2 server API can cause servers to keep accepting data even after sending a `GOAWAY` frame. This vulnerability affects two supported release lines: **Node.js 22** and **Node.js 24**.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : June 18, 2026, 6:01 p.m. | 3 hours, 37 minutes ago
Description :A flaw in Node.js HTTP/2 server API can cause servers to keep accepting data even after sending a `GOAWAY` frame. This vulnerability affects two supported release lines: **Node.js 22** and **Node.js 24**.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...