WhisperX tag archive

#body-parser

This page collects WhisperX intelligence signals tagged #body-parser. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (2)

The Lab · 2026-04-25 19:54:08 · GitHub Issues

1. Body-Parser Library Patches Critical Null Byte Injection Allowing Authentication Bypass

A null byte injection vulnerability in the widely deployed body-parser npm package has been patched after exposing protected endpoints to unauthenticated network attackers. CVE-2024-CRITICAL-002 carries a CVSS score of 9.1, reflecting the critical severity of an attack vector that requires no privileges and involves lo...

The Lab · 2026-05-06 18:31:45 · GitHub Issues

2. Express Middleware Vulnerability Exposes API to Uncontrolled Resource Consumption via Unbounded Body Parsing

A medium-severity security vulnerability has been identified in the application's Express body parser middleware configuration. The issue, classified under CWE-770 (Allocation of Resources Without Limits or Throttling) and CWE-400 (Uncontrolled Resource Consumption), stems from the middleware relying on default size li...