dayuanjiang CVE 脆弱性と CVE 一覧(1)

製品(CPE): — CVE 件数: 1

dayuanjiang 脆弱性概要

This page aggregates publicly disclosed CVE and security risk information related to dayuanjiang, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

脆弱性分布の推移(直近24か月)

表示中 11 / 1 CVE 件数
«« 先頭 « 前へ 1 / 1 次へ »
CVE 概要 ソース CVSS 最大値 EPSS(%) 公開 更新
CVE-2026-40608 Next AI Draw.io is a next.js web application that integrates AI capabilities with draw.io diagrams. Prior to 0.4.15, the embedded HTTP sidecar contains three POST handlers (/api/state, /api/restore, and /api/history-svg) that process incoming requests by accumulating the entire request body into a JavaScript string without any size limitations. Node.js buffers the entire payload in the V8 heap. Sending a sufficiently large body (e.g., 500 MiB or more) will exhaust the process heap memory, leadin [email protected] 6.2 0.15% 2026-04-21 2026-04-27
«« 先頭 « 前へ 1 / 1 次へ »
cvelogic Threat Intelligence