Tag
cve-2024-37890
Safeguard articles tagged "cve-2024-37890" — guides, analysis, and best practices for software supply chain and application security.
2 articles
Vulnerability Analysis
CVE-2024-37890: Denial of service in ws WebSocket library
CVE-2024-37890 lets attackers crash Node.js servers running vulnerable ws WebSocket versions with a single crafted request. Here's what's affected and how to fix it.
Oct 12, 20257 min read
Open Source
npm ws Security: Fixing the CVE-2024-37890 WebSocket DoS
The npm ws package powers most Node WebSocket servers. CVE-2024-37890 let a flood of request headers crash it. Here is how the flaw works and how to patch.
Aug 22, 20255 min read
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.