A flaw in Node.js can cause dns.resolveAny() Aborts the...
Moderate severity
Unreviewed
Published
Aug 4, 2026
to the GitHub Advisory Database
•
Updated Aug 4, 2026
Description
Published by the National Vulnerability Database
Aug 4, 2026
Published to the GitHub Advisory Database
Aug 4, 2026
Last updated
Aug 4, 2026
A flaw in Node.js can cause dns.resolveAny() Aborts the Node.js Process When a DNS Response Contains More Than 256 A Records.
Repeated triggering of this condition can lead to denial of service.
This vulnerability affects Node.js 26.x, 24.x, and 22.x.
References