CVE-2026-19534 | undici up to 6.28.0/7.29.0/8.10.1 WebSocket Client null pointer dereference

SecurityVulns

A vulnerability classified as problematic has been found in undici up to 6.28.0/7.29.0/8.10.1. This impacts an unknown function of the component WebSocket Client. Performing a manipulation results in null pointer dereference.

This vulnerability is identified as CVE-2026-19534. The attack can be initiated remotely. There is not any exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More