github socketio/socket.io 2.5.0

latest releases: @socket.io/cluster-engine@0.1.0, engine.io-parser@5.2.3, 2.5.1...
2 years ago

⚠️ WARNING ⚠️

The default value of the maxHttpBufferSize option has been decreased from 100 MB to 1 MB, in order to prevent attacks by denial of service.

Security advisory: GHSA-j4f2-536g-r55m

Bug Fixes

  • fix race condition in dynamic namespaces (05e1278)
  • ignore packet received after disconnection (22d4bdf)
  • only set 'connected' to true after middleware execution (226cc16)
  • prevent the socket from joining a room after disconnection (f223178)

Links:

Don't miss a new socket.io release

NewReleases is sending notifications on new releases.