nodejs

219 tracked vulnerabilities.

CVE-2015-3194 HIGH
OpenSSL 1.0.1-1.0.1q and 1.0.2-1.0.2e - Denial of Service via RSA PSS ASN.1 Signature
Dec 06, 2015
CVSS 7.5
EPSS 0.52
CVE-2015-3193 HIGH
OpenSSL 1.0.2 - Exposure of Sensitive Private-Key Information via Montgomery Squaring Implementation
Dec 06, 2015
CVSS 7.5
EPSS 0.30
CVE-2015-6764 CRITICAL
Google Chrome < 46.0.2490.86 - Denial of Service via JSON Stringifier Array Handling
Dec 06, 2015
CVSS 9.8
EPSS 0.14
CVE-2015-5380
Google V8 <0.12.6, io.js <1.8.3, 2.x <2.3.3 - Memory Corruption
Jul 09, 2015
EPSS 0.01
CVE-2015-0278
libuv <0.10.34 - Privilege Escalation
May 18, 2015
EPSS 0.02
CVE-2014-9748 HIGH
libuv < 1.7.4 - Denial of Service via Race Condition in Windows XP RWLock Implementation
Feb 11, 2020
CVSS 8.1
EPSS 0.00
CVE-2014-3744 HIGH NUCLEI
st module for Node.js < 0.2.5 - Path Traversal via Encoded Dot-Dot Sequences
Oct 23, 2017
CVSS 7.5
EPSS 0.78
CVE-2014-9772 MEDIUM
Validator <2.0.0 - XSS
Jan 23, 2017
CVSS 6.1
EPSS 0.00
CVE-2014-7191
Node.js qs module < 1.0.0 - Denial of Service via Sparse Array Index
Oct 19, 2014
EPSS 0.01
CVE-2014-5256
Nodejs - Memory Corruption
Sep 05, 2014
EPSS 0.01
CVE-2014-0224 HIGH
SSL Labs API Client
Jun 05, 2014
CVSS 7.4
EPSS 0.90
CVE-2013-7454 MEDIUM
Node.js <1.1.0 - XSS
Jan 23, 2017
CVSS 6.1
EPSS 0.00
CVE-2013-7453 MEDIUM
Validator <1.1.0 - XSS
Jan 23, 2017
CVSS 6.1
EPSS 0.00
CVE-2013-7452 MEDIUM
Validator <1.1.0 - XSS
Jan 23, 2017
CVSS 6.1
EPSS 0.01
CVE-2013-7451 MEDIUM
Validator <1.1.0 - XSS
Jan 23, 2017
CVSS 6.1
EPSS 0.01
CVE-2013-6668
Google Chrome <33.0.1750.146 V8 - Impact Unknown
Mar 05, 2014
EPSS 0.13
CVE-2013-4450
Nodejs - Improper Input Validation
Oct 21, 2013
EPSS 0.69
CVE-2013-2882
Google Chrome < 28.0.1500.94 - Type Confusion in V8
Jul 31, 2013
EPSS 0.02
CVE-2012-2330
Node.js <0.6.17 & <0.7.8 - Info Disclosure
Aug 13, 2012
EPSS 0.01