Description
A remote attacker can trigger a denial of service in the socket.remoteAddress variable, by sending a crafted HTTP request. Usage of the undefined variable raises a TypeError exception.
Remediation
References
https://research.jfrog.com/vulnerabilities/undefined-variable-usage-in-proxy-leads-to-remote-denial-of-service-xray-520917
Related Vulnerabilities
CVE-2023-34614 Vulnerability in maven package cc.plural:jsonij
CVE-2021-29444 Vulnerability in npm package jose-browser-runtime
CVE-2022-24377 Vulnerability in npm package cycle-import-check
CVE-2020-7715 Vulnerability in npm package deep-get-set
CVE-2022-23496 Vulnerability in maven package nl.basjes.parse.useragent:yauaa-nifi-parent