VendorsFastifyfastify-multipartany version
Vulnerabilities

Fastify Fastify-multipart any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2021-23597
Denial of Service (DoS)
Published 2022-02-11 · Modified
7.5EPSS 0.020
CVE-2020-8136
Prototype pollution vulnerability in fastify-multipart < 1.0.5 allows an attacker to crash fastify applications parsing multipart requests by sending a specially crafted request.
Published 2020-03-20 · Modified
7.5EPSS 0.015
CVE-2023-25576
@fastify/multipart vulnerable to DoS due to unlimited number of parts
Published 2023-02-14 · Modified
7.5EPSS 0.015
CVE-2026-18549
@fastify/multipart vulnerable to Denial of Service via aborted upload after fileSize limit
Published 2026-08-15 · Analyzed
7.5EPSS 0.006
CVE-2026-19474
@fastify/multipart vulnerable to Denial of Service via temporary file leak on aborted upload
Published 2026-08-15 · Analyzed
7.5EPSS 0.005