CVE-2026-62389 | websockets ws up to 8.21.0 Receiver lib/receiver.js memory allocation (EUVD-2026-44729)
A vulnerability, which was classified as problematic, was found in websockets ws up to 8.21.0. Affected by this vulnerability is an unknown functionality of the file lib/receiver.js of the component Receiver. Such manipulation leads to uncontrolled memory allocation.
This vulnerability is documented as CVE-2026-62389. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.