Vulnerability CVE-2024-21521


Published: 2024-07-10

Description:
All versions of the package @discordjs/opus are vulnerable to Denial of Service (DoS) due to providing an input object with a property toString to several different functions. Exploiting this vulnerability could lead to a system crash.

 References:
https://security.snyk.io/vuln/SNYK-JS-DISCORDJSOPUS-6370643
https://github.com/discordjs/opus/blob/814e500c2785c5207ace19650192629beba2728b/src/node-opus.cc%23L47
https://gist.github.com/dellalibera/98c48fd74bb240adbd7841a5c02aba9e

Copyright 2024, cxsecurity.com

 

Back to Top