Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Node.js

Node.jsпрограммная платформа, основанная на движке V8 (компилирующем JavaScript в машинный код)

Релизный цикл, информация об уязвимостях

Продукт: Node.js
Вендор: nodejs

График релизов

22232425262024202520262027202820292030

Релизные элементы

KBВерсияБилдДата доступности
24.18.124.18.1
24.18.024.18.0
24.17.024.17.0
24.16.024.16.0
24.15.024.15.0
24.14.124.14.1
24.14.024.14.0
24.13.124.13.1
24.13.024.13.0
24.12.024.12.0

Показывать по

Недавние уязвимости Node.js

Количество 1 203

redhat логотип

CVE-2020-8172

около 6 лет назад

TLS session reuse can lead to host certificate verification bypass in node version < 12.18.0 and < 14.4.0.

CVSS3: 7.4
EPSS: Низкий
redhat логотип

CVE-2018-21270

около 6 лет назад

Versions less than 0.0.6 of the Node.js stringstream module are vulnerable to an out-of-bounds read because of allocation of uninitialized buffers when a number is passed in the input stream (when using Node.js 4.x).

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:1180-1

около 6 лет назад

Security update for icu

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1317

больше 6 лет назад

ELSA-2020-1317: nodejs:10 security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2020:1317

больше 6 лет назад

Important: nodejs:10 security update

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:0459-1

больше 6 лет назад

Security update for icu

EPSS: Низкий
rocky логотип

RLSA-2020:1293

больше 6 лет назад

Important: nodejs:12 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1293

больше 6 лет назад

ELSA-2020-1293: nodejs:12 security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0819-1

больше 6 лет назад

Security update for icu

EPSS: Низкий
rocky логотип

RLSA-2020:0902

больше 6 лет назад

Important: icu security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
redhat логотип
CVE-2020-8172

TLS session reuse can lead to host certificate verification bypass in node version < 12.18.0 and < 14.4.0.

CVSS3: 7.4
6%
Низкий
около 6 лет назад
redhat логотип
CVE-2018-21270

Versions less than 0.0.6 of the Node.js stringstream module are vulnerable to an out-of-bounds read because of allocation of uninitialized buffers when a number is passed in the input stream (when using Node.js 4.x).

CVSS3: 6.5
4%
Низкий
около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:1180-1

Security update for icu

3%
Низкий
около 6 лет назад
oracle-oval логотип
ELSA-2020-1317

ELSA-2020-1317: nodejs:10 security update (IMPORTANT)

3%
Низкий
больше 6 лет назад
rocky логотип
RLSA-2020:1317

Important: nodejs:10 security update

3%
Низкий
больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2020:0459-1

Security update for icu

3%
Низкий
больше 6 лет назад
rocky логотип
RLSA-2020:1293

Important: nodejs:12 security update

3%
Низкий
больше 6 лет назад
oracle-oval логотип
ELSA-2020-1293

ELSA-2020-1293: nodejs:12 security update (IMPORTANT)

3%
Низкий
больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:0819-1

Security update for icu

3%
Низкий
больше 6 лет назад
rocky логотип
RLSA-2020:0902

Important: icu security update

3%
Низкий
больше 6 лет назад

Уязвимостей на страницу


Поделиться