Vendor
low
advisory
Denial of Service via Memory Leak in Node.js compression Middleware
1 CVEThe compression middleware for Node.js is vulnerable to a memory leak leading to Denial of Service when an attacker prematurely closes connections during compressed response transmission.
compression
denial-of-service
nodejs
middleware
vulnerability
1c
low
advisory
vm2 Denial of Service via Host-Returned Promise Rejection
1 TTP 1 CVEA vulnerability in the vm2 sandbox library (CVE-2026-92954) allows sandbox-based code to terminate the host Node.js process by invoking host-realm functions that return unhandled rejected Promises.
vm2
denial-of-service
sandbox-escape
nodejs
1t
1c