Node.js — программная платформа, основанная на движке V8 (компилирующем JavaScript в машинный код)
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 24.21.0 | 24.21.0 | ||
| 24.20.0 | 24.20.0 | ||
| 24.19.0 | 24.19.0 | ||
| 24.18.1 | 24.18.1 | ||
| 24.18.0 | 24.18.0 | ||
| 24.17.0 | 24.17.0 | ||
| 24.16.0 | 24.16.0 | ||
| 24.15.0 | 24.15.0 | ||
| 24.14.1 | 24.14.1 | ||
| 24.14.0 | 24.14.0 |
Показывать по
Количество 1 270
CVE-2020-8174
napi_get_value_string_*() allows various kinds of memory corruption in ...
CVE-2020-8174
napi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0.
CVE-2020-8174
napi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0.
BDU:2020-04460
Уязвимость функций napi_get_value_string_latin1(), napi_get_value_string_utf8(), napi_get_value_string_utf16() программной платформы Node.js, позволяющая нарушителю выполнить произвольный код
BDU:2020-05054
Уязвимость компонента Cluster: JS module (Node.js) системы управления базами данных Oracle MySQL Cluster, позволяющая нарушителю выполнить произвольный код
SUSE-SU-2020:0819-2
Security update for icu
ELSA-2020-2755
ELSA-2020-2755: nghttp2 security update (IMPORTANT)
RLSA-2020:2755
Important: nghttp2 security update
CVE-2020-8172
TLS session reuse can lead to host certificate verification bypass in ...
CVE-2020-8172
TLS session reuse can lead to host certificate verification bypass in node version < 12.18.0 and < 14.4.0.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2020-8174 napi_get_value_string_*() allows various kinds of memory corruption in ... | CVSS3: 8.1 | 8% Низкий | около 6 лет назад | |
CVE-2020-8174 napi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0. | CVSS3: 8.1 | 8% Низкий | около 6 лет назад | |
CVE-2020-8174 napi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0. | CVSS3: 8.1 | 8% Низкий | около 6 лет назад | |
BDU:2020-04460 Уязвимость функций napi_get_value_string_latin1(), napi_get_value_string_utf8(), napi_get_value_string_utf16() программной платформы Node.js, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.1 | 8% Низкий | около 6 лет назад | |
BDU:2020-05054 Уязвимость компонента Cluster: JS module (Node.js) системы управления базами данных Oracle MySQL Cluster, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.1 | 8% Низкий | около 6 лет назад | |
SUSE-SU-2020:0819-2 Security update for icu | 3% Низкий | около 6 лет назад | ||
ELSA-2020-2755 ELSA-2020-2755: nghttp2 security update (IMPORTANT) | 5% Низкий | около 6 лет назад | ||
RLSA-2020:2755 Important: nghttp2 security update | 5% Низкий | около 6 лет назад | ||
CVE-2020-8172 TLS session reuse can lead to host certificate verification bypass in ... | CVSS3: 7.4 | 6% Низкий | больше 6 лет назад | |
CVE-2020-8172 TLS session reuse can lead to host certificate verification bypass in node version < 12.18.0 and < 14.4.0. | CVSS3: 7.4 | 6% Низкий | больше 6 лет назад |
Уязвимостей на страницу