What the vulnerability does

01Description

Prototype pollution vulnerability in fastify-multipart < 1.0.5 allows an attacker to crash fastify applications parsing multipart requests by sending a specially crafted request.

Key dates

02Disclosure timeline

March 20, 2020 CVE published
August 4, 2024 Record updated