WhisperX tag archive

#null byte injection

This page collects WhisperX intelligence signals tagged #null byte injection. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-04-25 19:54:08 · GitHub Issues

1. Body-Parser Library Patches Critical Null Byte Injection Allowing Authentication Bypass

A null byte injection vulnerability in the widely deployed body-parser npm package has been patched after exposing protected endpoints to unauthenticated network attackers. CVE-2024-CRITICAL-002 carries a CVSS score of 9.1, reflecting the critical severity of an attack vector that requires no privileges and involves lo...