CVE-2025-7783
Insufficient Randomness in form-data.js Enables HTTP Parameter Pollution

Publication date: 2025-07-18

Last updated on: 2025-07-22

Assigner: 7ffcee3d-2c14-4c3e-b844-86c6a321a158

Description
Use of Insufficiently Random Values vulnerability in form-data allows HTTP Parameter Pollution (HPP). This vulnerability is associated with program files lib/form_data.Js. This issue affects form-data: < 2.5.4, 3.0.0 - 3.0.3, 4.0.0 - 4.0.3.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Affected Vendors & Products
Vendor Product Version
form-data form-data From 4.0.0 (inc) to 4.0.4 (inc)
form-data form-data From <2.5.4> (inc)
form-data form-data From 3.0.0 (inc) to 3.0.4 (inc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-330 Use of Insufficiently Random Values
AI Powered Q&A
Can you explain this vulnerability to me?


How can this vulnerability impact me? :


How can this vulnerability be detected on my network or system? Can you suggest some commands?


What immediate steps should I take to mitigate this vulnerability?


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
Meta Information
CVE Publication Date:
2025-07-18
CVE Last Modified Date:
2025-07-22
Report Generation Date:
2025-08-05
AI Powered Q&A Generation:
2025-07-18
EPSS Last Evaluated Date:
2025-07-22
NVD Report Link: