top of page


CVE-2025-59466: Critical Node.js AsyncLocalStorage and async_hooks Vulnerability Enables Easy Denial-of-Service Attacks
Executive Summary A critical vulnerability, CVE-2025-59466 , has been discovered in Node.js , specifically within the async_hooks module and its implementation in AsyncLocalStorage . This flaw enables remote attackers to crash Node.js servers by inducing an unrecoverable stack overflow, resulting in a Denial-of-Service (DoS) condition. The vulnerability is particularly severe for applications leveraging React Server Components , Next.js , and leading Application Performance
9 hours ago4 min read
bottom of page
.png)