{"type":"bundle","id":"bundle--d5cf9a4c-fd9a-5abc-850d-d12984dda71a","objects":[{"type":"campaign","spec_version":"2.1","id":"campaign--7b21b806-e151-5014-aecf-5e40b8e0cbb0","created":"2026-09-20T19:03:30.562Z","modified":"2026-09-20T19:03:30.562Z","name":"Undici WebSocket deflate bug can crash the Node process","description":"Undici WebSocket permessage-deflate handling can crash the Node process. Upgrade to the patched release.","aliases":["CVE-2026-85024"],"first_seen":"2026-09-03T00:00:00.000Z","last_seen":"2026-09-03T12:00:00.000Z","objective":"Defensive public threat-intelligence record; see limitations and source references.","external_references":[{"source_name":"NVD CVE-2026-85024","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-85024"},{"source_name":"HOL Guard operator write-up","url":"https://hol.org/blog/cve-2026-85024-undici-websocket-permessage-deflate-dos"},{"source_name":"CVE Record CVE-2026-85024","url":"https://www.cve.org/CVERecord?id=CVE-2026-85024"}]}]}