High severity7.5NVD Advisory· Published Mar 4, 2018· Updated Jun 17, 2026
CVE-2018-7560
CVE-2018-7560
Description
index.js in the Anton Myshenin aws-lambda-multipart-parser NPM package before 0.1.2 has a Regular Expression Denial of Service (ReDoS) issue via a crafted multipart/form-data boundary string.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
aws-lambda-multipart-parsernpm | < 0.1.2 | 0.1.2 |
Affected products
2- cpe:2.3:a:aws-lambda-multipart-parser_project:aws-lambda-multipart-parser:*:*:*:*:*:node.js:*:*Range: <=0.1.1
Patches
Vulnerability mechanics
References
3- github.com/advisories/GHSA-6jqp-j69q-pm62ghsaADVISORY
- github.com/myshenin/aws-lambda-multipart-parser/commit/56ccb03af4dddebc2b2defb348b6558783d5757envdThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2018-7560ghsaADVISORY
News mentions
0No linked articles in our index yet.