Vulnerabilities > CVE-2022-25324 - Unspecified vulnerability in Bignum Project Bignum

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
bignum-project

Summary

All versions of package bignum are vulnerable to Denial of Service (DoS) due to a type-check exception in V8, when verifying the type of the second argument to the .powm function, V8 will crash regardless of Node try/catch blocks.

Vulnerable Configurations

Part Description Count
Application
Bignum_Project
1