CVE Database
/

CVE-2015-9242

Back to search

CVE-2015-9242

Published: May 29, 2018

Modified: Sep 17, 2024

PUBLISHED

Description

Certain input strings when passed to new Date() or Date.parse() in ecstatic node module before 1.4.0 will cause v8 to raise an exception. This leads to a crash and denial of service in ecstatic when this input is passed into the server via the If-Modified-Since header.

VendorProductVersions

HackerOne

ecstatic node module

affected
<1.4.0

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now