CVE-2024-21521
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Jul 10, 2024
Updated: Jul 11, 2024
CWE ID 400
Summary
CVE-2024-21521 is a newly disclosed vulnerability affecting all versions of the @discordjs/opus package. This issue allows for a Denial of Service (DoS) attack, where an input object with a toxic toString property is provided to several different functions. Successful exploitation of this vulnerability could potentially result in a system crash. It is recommended that users of @discordjs/opus upgrade to a patched version as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share