CVE-2026-13697 | nodejs undici up to 7.28.x/8.8.x cache-control parser information disclosure

SecurityVulns

A vulnerability was found in nodejs undici up to 7.28.x/8.8.x. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component cache-control parser. Executing a manipulation can lead to information disclosure.

This vulnerability appears as CVE-2026-13697. The attack may be performed from remote. There is no available exploit.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More