Nodejs

178 tracked vulnerabilities.

CVE-2022-31150 MEDIUM
undici <5.7.1 - Code Injection
Jul 19, 2022
CVSS 5.3
EPSS 0.01
CVE-2022-32223 HIGH
Nodejs Node.js < 14.14.0 - Uncontrolled Search Path
Jul 14, 2022
CVSS 7.3
EPSS 0.06
CVE-2022-32222 MEDIUM
Nodejs Node.js < 18.5.0 - Uncontrolled Search Path
Jul 14, 2022
CVSS 5.3
EPSS 0.01
CVE-2022-32215 MEDIUM
Llhttp < 14.20.1 - HTTP Request Smuggling
Jul 14, 2022
CVSS 6.5
EPSS 0.89
CVE-2022-32214 MEDIUM
Llhttp < 2.1.5 - HTTP Request Smuggling
Jul 14, 2022
CVSS 6.5
EPSS 0.46
CVE-2022-32213 MEDIUM
Llhttp < 2.1.5 - HTTP Request Smuggling
Jul 14, 2022
CVSS 6.5
EPSS 0.90
CVE-2022-32212 HIGH
Nodejs Node.js < 14.14.0 - Improper Access Control
Jul 14, 2022
CVSS 8.1
EPSS 0.00
CVE-2022-32210 MEDIUM
Nodejs Undici < 5.5.1 - Improper Certificate Validation
Jul 14, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-0778 HIGH
BN_ mod_sqrt - Buffer Overflow
Mar 15, 2022
CVSS 7.5
EPSS 0.07
CVE-2022-21824 HIGH
Nodejs Node.js < 12.22.9 - Prototype Pollution
Feb 24, 2022
CVSS 8.2
EPSS 0.01
CVE-2021-44533 MEDIUM
Nodejs Node.js < 12.22.9 - Improper Certificate Validation
Feb 24, 2022
CVSS 5.3
EPSS 0.00
CVE-2021-44532 MEDIUM
Node.js < 12.22.9, < 14.18.3, < 16.13.2, < 17.3.1 - Code Injection
Feb 24, 2022
CVSS 5.3
EPSS 0.00
CVE-2021-44531 HIGH
Nodejs Node.js < 12.22.9 - Improper Certificate Validation
Feb 24, 2022
CVSS 7.4
EPSS 0.00
CVE-2021-4044 HIGH
OpenSSL - Memory Corruption
Dec 14, 2021
CVSS 7.5
EPSS 0.18
CVE-2021-3672 MEDIUM
C-ares < 1.17.2 - XSS
Nov 23, 2021
CVSS 5.6
EPSS 0.00
CVE-2021-22930 CRITICAL
Node.js <16.6.0, 14.17.4, 12.22.4 - Use After Free
Oct 07, 2021
CVSS 9.8
EPSS 0.00
CVE-2021-22940 HIGH
Node.js <16.6.1, 14.17.5, 12.22.5 - Use After Free
Aug 16, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-22939 MEDIUM
Node.js - Info Disclosure
Aug 16, 2021
CVSS 5.3
EPSS 0.00
CVE-2021-22931 CRITICAL
Node.js <16.6.0, 14.17.4, 12.22.4 - RCE
Aug 16, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-22921 HIGH
Node.js <16.4.1,14.17.2,12.22.2 - Privilege Escalation
Jul 12, 2021
CVSS 7.8
EPSS 0.01
CVE-2021-22918 MEDIUM
Node.js <16.4.1,14.17.2,12.22.2 - Info Disclosure
Jul 12, 2021
CVSS 5.3
EPSS 0.01
CVE-2021-3450 HIGH
Openssl < 1.1.1k - Improper Certificate Validation
Mar 25, 2021
CVSS 7.4
EPSS 0.00
CVE-2021-3449 MEDIUM
Openssl < 1.1.1k - NULL Pointer Dereference
Mar 25, 2021
CVSS 5.9
EPSS 0.08
CVE-2021-22884 HIGH
Node.js <10.24.0, 12.21.0, 14.16.0, 15.10.0 - Info Disclosure
Mar 03, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-22883 HIGH
Node.js <10.24.0,12.21.0,14.16.0,15.10.0 - DoS
Mar 03, 2021
CVSS 7.5
EPSS 0.91