nodejs Summary
Latest vulnerabilities published by nodejs
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Memory Leak Vulnerability in Node.js Affecting Multiple Versions
CVE-2025-23122NodejsNode3.7LOWMemory Leak Vulnerability in Node.js Affects Version 20 and 22
CVE-2025-23165NodejsNode3.7LOWNode.js Software Vulnerability Allowing Remote Crash via User Inputs
CVE-2025-23166NodejsNode7.5HIGHHTTP Parser Flaw in Node.js 20 Allows Request Smuggling
CVE-2025-23167NodejsNode6.5MEDIUMMemory Leak Vulnerability in Undici HTTP Client for Node.js
CVE-2025-47279NodejsUndici3.1LOWMemory Leak in HTTP/2 Server on Node.js Affects Multiple Versions
CVE-2025-23085NodejsNode5.3MEDIUMNode.js Vulnerability Impacting Windows Drive Name Handling
CVE-2025-23084NodejsNodeNode.js Worker Thread Vulnerability in Diagnostics Channel Utility
CVE-2025-23083NodejsNode7.7HIGHHTTP Client Vulnerability in Undici Affecting Node.js Applications
CVE-2025-22150NodejsUndici6.8MEDIUMPath Traversal Vulnerability in Open-Source Software Affecting Various Applications
CVE-2024-37372NodejsNodeArbitrary Code Execution through Improper Handling of Batch Files
CVE-2024-36138NodejsNodeπ°8.1HIGHMaliciously crafted WebAssembly module can inject JavaScript code, potentially exposing sensitive data
CVE-2023-39333NodejsNode5.3MEDIUMVulnerability Identified in Node.js Experimental Permission Model
CVE-2024-36137NodejsNode3.3LOWExperimental Permission Model Vulnerability in Node.js version 20
CVE-2023-30582NodejsNode5.3MEDIUMNode.js version 20 vulnerability allows bypassing restrictions through inspector module
CVE-2023-30587NodejsNode7.5HIGHfs.openAsBlob() Vulnerability Allows Bypass of Experimental Permission Model in Node.js 20
CVE-2023-30583NodejsNode7.5HIGHNode.js Version 20 Vulnerability Affects Experimental Permission Model
CVE-2023-30584NodejsNode7.7HIGHPatched Memory Leak in Undici HTTP/1.1 Client
CVE-2024-38372NodejsUndici2LOWUndici's Proxy-Authorization header not cleared on cross-origin redirect for dispatch, request, stream, pipeline
CVE-2024-30260NodejsUndici4.3MEDIUMUndici's fetch with integrity option is too lax when algorithm is specified but hash value is in incorrect
CVE-2024-30261NodejsUndici2.6LOWMemory Leak in Undici HTTP/1.1 Client Affects Users, Upgrade to 6.6.1 Advised
CVE-2024-24750NodejsUndici6.5MEDIUMUndici Patches Authentication Header Vulnerability
CVE-2024-24758NodejsUndici3.9LOWDenial of Service Vulnerability in Node.js by Invalid x509 Certificate Handling
CVE-2023-30588NodejsNode5.3MEDIUMDiffie-Hellman Key Generation Issue in Node.js
CVE-2023-30590NodejsNode7.5HIGHNode.js Vulnerability in Windows Installer for Node.js by OpenJS Foundation
CVE-2023-30585NodejsNode7.5HIGH