CNNVD-202512-2373 Information

CNNVD ID

CNNVD-202512-2373

CVE-2025-67731

  • CNNVD Published: 2025-12-12

Description (Chinese)

Servify Express是Aaron doran个人开发者的一个快递包裹表单服务器。 Servify Express 1.2之前版本存在资源管理错误漏洞,该漏洞源于Express服务器未设置JSON解析大小限制,可能导致拒绝服务攻击。

Description (English)

Service Express is a delivery list server for Aaron doran’s personal developer. The previous version of Service Express 1.2 had a resource management error gap, which stemmed from the fact that the Express server did not set JSON resolution size limits, which could lead to a denial of service attacks.

Hazard Level

High

Vulnerability Type

资源管理错误

Affected Vendor

个人开发者

Published

2025-12-12

Last Modified

2026-02-24

References

https://github.com/Aarondoran/servify-express/commit/8dff7f56504b356278d849734ef2050e5cd23b61 https://github.com/Aarondoran/servify-express/releases/tag/V1.2 https://github.com/Aarondoran/servify-express/security/advisories/GHSA-qgc4-8p88-4w7m

Patch

https://github.com/Aarondoran/servify-express/releases

Share on: