CVE-2026-6733 | undici up to 6.25.x/7.27.x/8.4.x Setting toctou (GHSA-35p6-xmwp-9g52)
A vulnerability has been found in undici up to 6.25.x/7.27.x/8.4.x and classified as problematic. This impacts an unknown function of the component Setting Handler. The manipulation leads to time-of-check time-of-use.
This vulnerability is referenced as CVE-2026-6733. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.