13 Total advisories
13 Vulnerabilities
0 Malware
Dependency scanning
Check whether multer is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
UNKNOWN
CVE-2026-3304
Multer vulnerable to Denial of Service via incomplete cleanup
UNKNOWN
CVE-2026-3520
Multer Vulnerable to Denial of Service via Uncontrolled Recursion
UNKNOWN
CVE-2026-2359
Multer vulnerable to Denial of Service via resource exhaustion
UNKNOWN
CVE-2025-48997
Multer vulnerable to Denial of Service via unhandled exception
HIGH 7.5
CVE-2025-47944
Multer vulnerable to Denial of Service from maliciously crafted requests
HIGH 7.5
CVE-2025-47935
Multer vulnerable to Denial of Service via memory leaks from unclosed streams
HIGH 7.5
CVE-2026-77078
multer vulnerable to Denial of Service via crafted multipart field names
LOW 3.7
CVE-2026-77063
multer vulnerable to file size limit bypass via async fileFilter race condition
HIGH 7.5
CVE-2026-82333
multer vulnerable to Denial of Service via oversized array index in field names
HIGH 7.5
CVE-2026-77037
multer vulnerable to Denial of Service via file descriptor leak on aborted uploads
MEDIUM 5.3
CVE-2026-5038
Multer vulnerable to Denial of Service via incomplete cleanup of aborted uploads
HIGH 7.5
CVE-2026-5079
Multer vulnerable to Denial of Service via deeply nested field names
HIGH 7.5
CVE-2025-7338
Multer vulnerable to Denial of Service via unhandled exception from malformed request
Browse more npm advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes