PT-2026-71422 · Npm · Baseline-Browser-Mapping
CVSS v4.0
6.6
Medium
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/S:N/AU:Y/R:U/V:D/RE:M/U:Amber |
Name of the Vulnerable Software and Affected Versions
baseline-browser-mapping versions 2.x through 2.10.x
Description
The software calls
process.exit() instead of throwing an error when it encounters invalid or conflicting input parameters. This behavior can trigger the immediate termination of the process, resulting in a denial of service.Recommendations
Update baseline-browser-mapping to version 2.11.0 or later.
Exploit
Fix
DoS
Improper Handling of Exceptional Conditions
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Baseline-Browser-Mapping