VendorsSocketsocket.io-parserany version
Vulnerabilities

Socket socket.io-parser any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2022-2421
Socket.io - Improper type validation in attachment parsing
Published 2022-10-25 · Analyzed
10.0EPSS 0.012
CVE-2026-33151
socket.io allows an unbounded number of binary attachments
Published 2026-03-20 · Analyzed
8.7EPSS 0.006
CVE-2020-36049
socket.io-parser before 3.4.1 allows attackers to cause a denial of service (memory consumption) via a large packet because a concatenation approach is used.
Published 2021-01-07 · Modified
7.5EPSS 0.026
CVE-2023-32695
Insufficient validation when decoding a Socket.IO packet
Published 2023-05-27 · Modified
7.5EPSS 0.011