dayuanjiang CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

dayuanjiang vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to dayuanjiang, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2026-40608 Next AI Draw.io is a next.js web application that integrates AI capabilities with draw.io diagrams. Prior to 0.4.15, the embedded HTTP sidecar contains three POST handlers (/api/state, /api/restore, and /api/history-svg) that process incoming requests by accumulating the entire request body into a JavaScript string without any size limitations. Node.js buffers the entire payload in the V8 heap. Sending a sufficiently large body (e.g., 500 MiB or more) will exhaust the process heap memory, leadin [email protected] 6.2 0.01% 2026-04-21 2026-04-27
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence