CVE-2026-82562 | ljharb qs up to 6.15.x Query Parser lib/parse.js parse comma/throwOnLimitExceeded allocation of resources
A vulnerability identified as problematic has been detected in ljharb qs up to 6.15.x. Affected is the function parse of the file lib/parse.js of the component Query Parser. Performing a manipulation of the argument comma/throwOnLimitExceeded results in allocation of resources.
This vulnerability is reported as CVE-2026-82562. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.VulDB Recent EntriesRead More