// For flags

CVE-2013-4450

NodeJS: HTTP Pipelining DoS

Severity Score

10.0
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

2
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The HTTP server in Node.js 0.10.x before 0.10.21 and 0.8.x before 0.8.26 allows remote attackers to cause a denial of service (memory and CPU consumption) by sending a large number of pipelined requests without reading the response.

El servidor HTTP en Node.js 0.10.x anterior a la versión 0.10.21 y 0.8.x anterior a 0.8.26 permite a atacantes remotos provocar una denegación de servicio (consumo de memoria y CPU) mediante el envío de un número largo de solicitudes canalizadas sin leer la respuesta.

Node.js is a software development platform for building fast and scalable network applications in the JavaScript programming language. A denial of service flaw was found in the way Node.js handled pipelined HTTP requests. A remote attacker could use this flaw to send an excessive amount of HTTP requests over a network connection, causing Node.js to use an excessive amount of memory and possibly exit when all available memory is exhausted. Node.js is included in Red Hat Software Collections 1.0 as a Technology Preview.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Changed
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2013-06-12 CVE Reserved
  • 2013-10-21 CVE Published
  • 2024-08-06 CVE Updated
  • 2024-08-06 First Exploit
  • 2025-07-04 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-20: Improper Input Validation
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.0
Search vendor "Nodejs" for product "Nodejs" and version "0.8.0"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.1
Search vendor "Nodejs" for product "Nodejs" and version "0.8.1"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.2
Search vendor "Nodejs" for product "Nodejs" and version "0.8.2"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.3
Search vendor "Nodejs" for product "Nodejs" and version "0.8.3"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.4
Search vendor "Nodejs" for product "Nodejs" and version "0.8.4"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.5
Search vendor "Nodejs" for product "Nodejs" and version "0.8.5"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.6
Search vendor "Nodejs" for product "Nodejs" and version "0.8.6"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.7
Search vendor "Nodejs" for product "Nodejs" and version "0.8.7"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.8
Search vendor "Nodejs" for product "Nodejs" and version "0.8.8"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.9
Search vendor "Nodejs" for product "Nodejs" and version "0.8.9"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.10
Search vendor "Nodejs" for product "Nodejs" and version "0.8.10"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.11
Search vendor "Nodejs" for product "Nodejs" and version "0.8.11"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.12
Search vendor "Nodejs" for product "Nodejs" and version "0.8.12"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.13
Search vendor "Nodejs" for product "Nodejs" and version "0.8.13"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.14
Search vendor "Nodejs" for product "Nodejs" and version "0.8.14"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.15
Search vendor "Nodejs" for product "Nodejs" and version "0.8.15"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.16
Search vendor "Nodejs" for product "Nodejs" and version "0.8.16"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.17
Search vendor "Nodejs" for product "Nodejs" and version "0.8.17"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.18
Search vendor "Nodejs" for product "Nodejs" and version "0.8.18"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.19
Search vendor "Nodejs" for product "Nodejs" and version "0.8.19"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.20
Search vendor "Nodejs" for product "Nodejs" and version "0.8.20"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.21
Search vendor "Nodejs" for product "Nodejs" and version "0.8.21"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.22
Search vendor "Nodejs" for product "Nodejs" and version "0.8.22"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.23
Search vendor "Nodejs" for product "Nodejs" and version "0.8.23"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.24
Search vendor "Nodejs" for product "Nodejs" and version "0.8.24"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.8.25
Search vendor "Nodejs" for product "Nodejs" and version "0.8.25"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.0
Search vendor "Nodejs" for product "Nodejs" and version "0.10.0"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.1
Search vendor "Nodejs" for product "Nodejs" and version "0.10.1"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.2
Search vendor "Nodejs" for product "Nodejs" and version "0.10.2"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.3
Search vendor "Nodejs" for product "Nodejs" and version "0.10.3"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.4
Search vendor "Nodejs" for product "Nodejs" and version "0.10.4"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.5
Search vendor "Nodejs" for product "Nodejs" and version "0.10.5"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.6
Search vendor "Nodejs" for product "Nodejs" and version "0.10.6"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.7
Search vendor "Nodejs" for product "Nodejs" and version "0.10.7"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.8
Search vendor "Nodejs" for product "Nodejs" and version "0.10.8"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.9
Search vendor "Nodejs" for product "Nodejs" and version "0.10.9"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.10
Search vendor "Nodejs" for product "Nodejs" and version "0.10.10"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.11
Search vendor "Nodejs" for product "Nodejs" and version "0.10.11"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.12
Search vendor "Nodejs" for product "Nodejs" and version "0.10.12"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.13
Search vendor "Nodejs" for product "Nodejs" and version "0.10.13"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.14
Search vendor "Nodejs" for product "Nodejs" and version "0.10.14"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.15
Search vendor "Nodejs" for product "Nodejs" and version "0.10.15"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.16
Search vendor "Nodejs" for product "Nodejs" and version "0.10.16"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.17
Search vendor "Nodejs" for product "Nodejs" and version "0.10.17"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.18
Search vendor "Nodejs" for product "Nodejs" and version "0.10.18"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.19
Search vendor "Nodejs" for product "Nodejs" and version "0.10.19"
-
Affected
Nodejs
Search vendor "Nodejs"
Nodejs
Search vendor "Nodejs" for product "Nodejs"
0.10.20
Search vendor "Nodejs" for product "Nodejs" and version "0.10.20"
-
Affected