A vulnerability was found in nodejs Node.js up to 22.23.1/24.18.0. It has been declared as problematic. This affects an unknown function of the component HTTP2. The manipulation results in uncontrolled memory allocation.
This vulnerability is cataloged as CVE-2026-56846. The attack may be launched remotely. There is no exploit available.