CVE-2026-102414 | Browserify pbkdf2 up to 3.1.6 JavaScript Fallback lib/sync.js pbkdf2Sync/pbkdf2 Password resource consumption

SecurityVulns

A vulnerability described as problematic has been identified in Browserify pbkdf2 up to 3.1.6. Affected is the function pbkdf2Sync/pbkdf2 of the file lib/sync.js of the component JavaScript Fallback. The manipulation of the argument Password results in resource consumption.

This vulnerability is cataloged as CVE-2026-102414. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More