Количество 22
Количество 22
CVE-2026-21714
A memory leak occurs in Node.js HTTP/2 servers when a client sends WINDOW_UPDATE frames on stream 0 (connection-level) that cause the flow control window to exceed the maximum value of 2³¹-1. The server correctly sends a GOAWAY frame, but the Http2Session object is never cleaned up. This vulnerability affects HTTP2 users on Node.js 20, 22, 24 and 25.
CVE-2026-21714
A memory leak occurs in Node.js HTTP/2 servers when a client sends WINDOW_UPDATE frames on stream 0 (connection-level) that cause the flow control window to exceed the maximum value of 2³¹-1. The server correctly sends a GOAWAY frame, but the Http2Session object is never cleaned up. This vulnerability affects HTTP2 users on Node.js 20, 22, 24 and 25.
CVE-2026-21714
A memory leak occurs in Node.js HTTP/2 servers when a client sends WINDOW_UPDATE frames on stream 0 (connection-level) that cause the flow control window to exceed the maximum value of 2³¹-1. The server correctly sends a GOAWAY frame, but the Http2Session object is never cleaned up. This vulnerability affects HTTP2 users on Node.js 20, 22, 24 and 25.
CVE-2026-21714
A memory leak occurs in Node.js HTTP/2 servers when a client sends WINDOW_UPDATE frames on stream 0 (connection-level) that cause the flow control window to exceed the maximum value of 2³¹-1. The server correctly sends a GOAWAY frame, but the Http2Session object is never cleaned up. This vulnerability affects HTTP2 users on Node.js 20, 22, 24 and 25.
CVE-2026-21714
A memory leak occurs in Node.js HTTP/2 servers when a client sends WIN ...
GHSA-cfr8-f5q7-84wq
A memory leak occurs in Node.js HTTP/2 servers when a client sends WINDOW_UPDATE frames on stream 0 (connection-level) that cause the flow control window to exceed the maximum value of 2³¹-1. The server correctly sends a GOAWAY frame, but the Http2Session object is never cleaned up. This vulnerability affects HTTP2 users on Node.js 20, 22, 24 and 25.
BDU:2026-04836
Уязвимость программной платформы Node.js, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю оказать воздействие на доступность защищаемой информации
ROS-20260818-80-0008
Уязвимость nodejs24
ROS-20260818-73-0012
Уязвимость nodejs
SUSE-SU-2026:1509-1
Security update for nodejs22
SUSE-SU-2026:1478-1
Security update for nodejs22
SUSE-SU-2026:1371-1
Security update for nodejs20
SUSE-SU-2026:1363-1
Security update for nodejs20
openSUSE-SU-2026:20519-1
Security update for nodejs24
SUSE-SU-2026:1299-1
Security update for nodejs24
RLSA-2026:7670
Important: nodejs:24 security update
ELSA-2026-7670
ELSA-2026-7670: nodejs:24 security update (IMPORTANT)
RLSA-2026:7675
Important: nodejs24 security update
RLSA-2026:7350
Important: nodejs:24 security update
ELSA-2026-7675
ELSA-2026-7675: nodejs24 security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-21714 A memory leak occurs in Node.js HTTP/2 servers when a client sends WINDOW_UPDATE frames on stream 0 (connection-level) that cause the flow control window to exceed the maximum value of 2³¹-1. The server correctly sends a GOAWAY frame, but the Http2Session object is never cleaned up. This vulnerability affects HTTP2 users on Node.js 20, 22, 24 and 25. | CVSS3: 5.3 | 0% Низкий | 6 месяцев назад | |
CVE-2026-21714 A memory leak occurs in Node.js HTTP/2 servers when a client sends WINDOW_UPDATE frames on stream 0 (connection-level) that cause the flow control window to exceed the maximum value of 2³¹-1. The server correctly sends a GOAWAY frame, but the Http2Session object is never cleaned up. This vulnerability affects HTTP2 users on Node.js 20, 22, 24 and 25. | CVSS3: 5.3 | 0% Низкий | 6 месяцев назад | |
CVE-2026-21714 A memory leak occurs in Node.js HTTP/2 servers when a client sends WINDOW_UPDATE frames on stream 0 (connection-level) that cause the flow control window to exceed the maximum value of 2³¹-1. The server correctly sends a GOAWAY frame, but the Http2Session object is never cleaned up. This vulnerability affects HTTP2 users on Node.js 20, 22, 24 and 25. | CVSS3: 5.3 | 0% Низкий | 6 месяцев назад | |
CVE-2026-21714 A memory leak occurs in Node.js HTTP/2 servers when a client sends WINDOW_UPDATE frames on stream 0 (connection-level) that cause the flow control window to exceed the maximum value of 2³¹-1. The server correctly sends a GOAWAY frame, but the Http2Session object is never cleaned up. This vulnerability affects HTTP2 users on Node.js 20, 22, 24 and 25. | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад | |
CVE-2026-21714 A memory leak occurs in Node.js HTTP/2 servers when a client sends WIN ... | CVSS3: 5.3 | 0% Низкий | 6 месяцев назад | |
GHSA-cfr8-f5q7-84wq A memory leak occurs in Node.js HTTP/2 servers when a client sends WINDOW_UPDATE frames on stream 0 (connection-level) that cause the flow control window to exceed the maximum value of 2³¹-1. The server correctly sends a GOAWAY frame, but the Http2Session object is never cleaned up. This vulnerability affects HTTP2 users on Node.js 20, 22, 24 and 25. | CVSS3: 5.3 | 0% Низкий | 6 месяцев назад | |
BDU:2026-04836 Уязвимость программной платформы Node.js, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю оказать воздействие на доступность защищаемой информации | CVSS3: 5.3 | 0% Низкий | 6 месяцев назад | |
ROS-20260818-80-0008 Уязвимость nodejs24 | CVSS3: 5.3 | 0% Низкий | 27 дней назад | |
ROS-20260818-73-0012 Уязвимость nodejs | CVSS3: 5.3 | 0% Низкий | 27 дней назад | |
SUSE-SU-2026:1509-1 Security update for nodejs22 | 5 месяцев назад | |||
SUSE-SU-2026:1478-1 Security update for nodejs22 | 5 месяцев назад | |||
SUSE-SU-2026:1371-1 Security update for nodejs20 | 5 месяцев назад | |||
SUSE-SU-2026:1363-1 Security update for nodejs20 | 5 месяцев назад | |||
openSUSE-SU-2026:20519-1 Security update for nodejs24 | 5 месяцев назад | |||
SUSE-SU-2026:1299-1 Security update for nodejs24 | 5 месяцев назад | |||
RLSA-2026:7670 Important: nodejs:24 security update | 5 месяцев назад | |||
ELSA-2026-7670 ELSA-2026-7670: nodejs:24 security update (IMPORTANT) | 5 месяцев назад | |||
RLSA-2026:7675 Important: nodejs24 security update | 5 месяцев назад | |||
RLSA-2026:7350 Important: nodejs:24 security update | 5 месяцев назад | |||
ELSA-2026-7675 ELSA-2026-7675: nodejs24 security update (IMPORTANT) | 3 месяца назад |
Уязвимостей на страницу