An open index of dependabot pull requests across open source projects.

multer

Ecosystem:
npm
Package URL:
pkg:npm/multer
Total PRs:
7,033 Dependabot PRs
Latest PR:
1 day ago
Unique Repositories:
4,449 repositories
Unique Repos (30 days):
38 repositories
Security Advisories
Multer vulnerable to Denial of Service via unhandled exception
GHSA-g5hg-p3ph-g8qg CVE-2025-48997 HIGH published about 1 year ago • updated 6 days ago
### Impact A vulnerability in Multer versions >=1.4.4-lts.1, <2.0.1 allows an attacker to trigger a Denial of Service (DoS) by sending an upload f...
Multer vulnerable to Denial of Service via resource exhaustion
GHSA-v52c-386h-88mc CVE-2026-2359 HIGH published 4 months ago • updated 16 days ago
### Impact A vulnerability in Multer versions < 2.1.0 allows an attacker to trigger a Denial of Service (DoS) by dropping connection during file u...
Multer vulnerable to Denial of Service via incomplete cleanup
GHSA-xf7r-hgr6-v32p CVE-2026-3304 HIGH published 4 months ago • updated 16 days ago
### Impact A vulnerability in Multer versions < 2.1.0 allows an attacker to trigger a Denial of Service (DoS) by sending malformed requests, poten...
Multer vulnerable to Denial of Service via incomplete cleanup of aborted uploads
GHSA-3p4h-7m6x-2hcm CVE-2026-5038 MODERATE published 1 day ago • updated 1 day ago
### Impact A vulnerability in Multer allows an attacker to trigger a Denial of Service (DoS) by aborting or sending malformed multipart uploads, c...
Multer vulnerable to Denial of Service via deeply nested field names
GHSA-72gw-mp4g-v24j CVE-2026-5079 HIGH published 1 day ago • updated 1 day ago
### Impact Multer is vulnerable to a Denial of Service (DoS) via deeply nested field names in multipart form data. The `append-field` dependency p...
Recent PRs
Bump multer and @types/multer

aswer18400/QXwap #218

1.4.5-lts.2 → 2.1.1 Major PR
Open 25 days ago 4 comments
aswer18400
Package Details
Name: multer
Ecosystem: npm
PURL Type: npm
Package URL: pkg:npm/multer
JSON API: View JSON
Security Advisories

9

Active advisories
HIGH 8
MODERATE 1
View All npm Advisories
Package Information
Description:

Middleware for handling `multipart/form-data`.

Repository: https://github.com/expressjs/multer
Homepage: https://github.com/expressjs/multer#readme
Latest Release: 2.0.1
about 1 year ago
Dependent Repos: 323,227
Dependent Packages: 4,202
Downloads: 29,118,183
Ranking: Top 0.0655% by dependent repos Top 0.0665% by downloads Top 0.0226% by dependent pkgs
PR Status
Open 3,574 (50.8%)
Merged 1,304 (18.5%)
Closed 1,657 (23.6%)
PR Types
Major 4,522 (64.3%)
Minor 459 (6.5%)
Patch 1,414 (20.1%)
Removal 8 (0.1%)