Количество 1 146
Количество 1 146
openSUSE-SU-2019:1211-1
Security update for nodejs10
openSUSE-SU-2018:1962-1
Security update for nodejs6
openSUSE-SU-2015:1825-2
Security update for nodejs
openSUSE-SU-2015:1825-1
Security update for nodejs
SUSE-SU-2023:0682-1
Security update for nodejs12
SUSE-SU-2023:0606-1
Security update for nodejs10
SUSE-SU-2022:4301-1
Security update for nodejs10
SUSE-SU-2022:4255-1
Security update for nodejs14
SUSE-SU-2022:4254-1
Security update for nodejs12
SUSE-SU-2022:4084-1
Security update for nodejs16
SUSE-SU-2022:4003-1
Security update for nodejs16
SUSE-SU-2022:3989-1
Security update for nodejs12
SUSE-SU-2022:3968-1
Security update for nodejs14
SUSE-SU-2022:3967-1
Security update for nodejs16
SUSE-SU-2019:0636-1
Security update for nodejs10
SUSE-SU-2019:0635-1
Security update for nodejs8
SUSE-SU-2019:0627-1
Security update for nodejs10
SUSE-SU-2018:1892-1
Security update for nodejs6
GHSA-x6fg-f45m-jf5q
Regular Expression Denial of Service in semver
GHSA-x3wm-m4vj-p6px
A vulnerability has been discovered in Node.js version 20, specifically within the experimental permission model. This flaw relates to improper handling of Buffers in file system APIs causing a traversal path to bypass when verifying file permissions. This vulnerability affects all users using the experimental permission model in Node.js 20. Please note that at the time this CVE was issued, the permission model is an experimental feature of Node.js.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
openSUSE-SU-2019:1211-1 Security update for nodejs10 | 16% Средний | больше 7 лет назад | ||
openSUSE-SU-2018:1962-1 Security update for nodejs6 | 7% Низкий | около 8 лет назад | ||
openSUSE-SU-2015:1825-2 Security update for nodejs | 8% Низкий | больше 10 лет назад | ||
openSUSE-SU-2015:1825-1 Security update for nodejs | 8% Низкий | больше 10 лет назад | ||
SUSE-SU-2023:0682-1 Security update for nodejs12 | 0% Низкий | больше 3 лет назад | ||
SUSE-SU-2023:0606-1 Security update for nodejs10 | 0% Низкий | больше 3 лет назад | ||
SUSE-SU-2022:4301-1 Security update for nodejs10 | 14% Средний | больше 3 лет назад | ||
SUSE-SU-2022:4255-1 Security update for nodejs14 | 14% Средний | больше 3 лет назад | ||
SUSE-SU-2022:4254-1 Security update for nodejs12 | 14% Средний | больше 3 лет назад | ||
SUSE-SU-2022:4084-1 Security update for nodejs16 | 14% Средний | больше 3 лет назад | ||
SUSE-SU-2022:4003-1 Security update for nodejs16 | 14% Средний | больше 3 лет назад | ||
SUSE-SU-2022:3989-1 Security update for nodejs12 | 14% Средний | больше 3 лет назад | ||
SUSE-SU-2022:3968-1 Security update for nodejs14 | 14% Средний | больше 3 лет назад | ||
SUSE-SU-2022:3967-1 Security update for nodejs16 | 14% Средний | больше 3 лет назад | ||
SUSE-SU-2019:0636-1 Security update for nodejs10 | 16% Средний | больше 7 лет назад | ||
SUSE-SU-2019:0635-1 Security update for nodejs8 | 16% Средний | больше 7 лет назад | ||
SUSE-SU-2019:0627-1 Security update for nodejs10 | 16% Средний | больше 7 лет назад | ||
SUSE-SU-2018:1892-1 Security update for nodejs6 | 7% Низкий | около 8 лет назад | ||
GHSA-x6fg-f45m-jf5q Regular Expression Denial of Service in semver | CVSS3: 7.5 | 6% Низкий | почти 9 лет назад | |
GHSA-x3wm-m4vj-p6px A vulnerability has been discovered in Node.js version 20, specifically within the experimental permission model. This flaw relates to improper handling of Buffers in file system APIs causing a traversal path to bypass when verifying file permissions. This vulnerability affects all users using the experimental permission model in Node.js 20. Please note that at the time this CVE was issued, the permission model is an experimental feature of Node.js. | CVSS3: 8.8 | 2% Низкий | почти 3 года назад |
Уязвимостей на страницу