CYBERHAWK / CVE / CVE-2025-71330

CVE-2025-71330

HIGH CVSS 7.5 other

The flaw

image-size through 2.0.2 contains a denial of service vulnerability that allows remote attackers to permanently block the Node.js event loop by supplying a specially crafted ICNS image buffer. Attackers can craft an ICNS buffer containing v

What to do

Review advisory and patch per vendor guidance.

▸ Scan my repo for CVE-2025-71330

References

First seen 2026-06-12 · Tracked by PickBits CyberHawk · Weekly CVE digest