Логотип exploitDog
bind:"CVE-2023-38552" OR bind:"CVE-2023-45143" OR bind:"CVE-2023-44487" OR bind:"CVE-2023-39333"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-38552" OR bind:"CVE-2023-45143" OR bind:"CVE-2023-44487" OR bind:"CVE-2023-39333"

Количество 109

Количество 109

redhat логотип

CVE-2023-45143

около 2 лет назад

Undici is an HTTP/1.1 client written from scratch for Node.js. Prior to version 5.26.2, Undici already cleared Authorization headers on cross-origin redirects, but did not clear `Cookie` headers. By design, `cookie` headers are forbidden request headers, disallowing them to be set in RequestInit.headers in browser environments. Since undici handles headers more liberally than the spec, there was a disconnect from the assumptions the spec made, and undici's implementation of fetch. As such this may lead to accidental leakage of cookie to a third-party site or a malicious attacker who can control the redirection target (ie. an open redirector) to leak the cookie to the third party site. This was patched in version 5.26.2. There are no known workarounds.

CVSS3: 3.9
EPSS: Низкий
nvd логотип

CVE-2023-45143

около 2 лет назад

Undici is an HTTP/1.1 client written from scratch for Node.js. Prior to version 5.26.2, Undici already cleared Authorization headers on cross-origin redirects, but did not clear `Cookie` headers. By design, `cookie` headers are forbidden request headers, disallowing them to be set in RequestInit.headers in browser environments. Since undici handles headers more liberally than the spec, there was a disconnect from the assumptions the spec made, and undici's implementation of fetch. As such this may lead to accidental leakage of cookie to a third-party site or a malicious attacker who can control the redirection target (ie. an open redirector) to leak the cookie to the third party site. This was patched in version 5.26.2. There are no known workarounds.

CVSS3: 3.9
EPSS: Низкий
msrc логотип

CVE-2023-45143

около 2 лет назад

CVSS3: 3.5
EPSS: Низкий
debian логотип

CVE-2023-45143

около 2 лет назад

Undici is an HTTP/1.1 client written from scratch for Node.js. Prior t ...

CVSS3: 3.9
EPSS: Низкий
github логотип

GHSA-wqq4-5wpv-mx2g

около 2 лет назад

Undici's cookie header not cleared on cross-origin redirect in fetch

CVSS3: 3.9
EPSS: Низкий
fstec логотип

BDU:2023-07356

около 2 лет назад

Уязвимость клиента HTTP/1.1 undici программной платформы Node.js, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 3.5
EPSS: Низкий
ubuntu логотип

CVE-2023-39333

около 1 года назад

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2023-39333

около 2 лет назад

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2023-39333

около 1 года назад

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-39333

около 1 года назад

Maliciously crafted export names in an imported WebAssembly module can ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2023-44487

около 2 лет назад

The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.

CVSS3: 7.5
EPSS: Критический
redhat логотип

CVE-2023-44487

около 2 лет назад

The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.

CVSS3: 7.5
EPSS: Критический
nvd логотип

CVE-2023-44487

около 2 лет назад

The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.

CVSS3: 7.5
EPSS: Критический
msrc логотип

CVE-2023-44487

около 2 лет назад

MITRE: CVE-2023-44487 HTTP/2 Rapid Reset Attack

EPSS: Критический
debian логотип

CVE-2023-44487

около 2 лет назад

The HTTP/2 protocol allows a denial of service (server resource consum ...

CVSS3: 7.5
EPSS: Критический
github логотип

GHSA-wj24-gwh6-mgh8

около 1 года назад

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2023-08046

около 2 лет назад

Уязвимость модуля WebAssembly программной платформы Node.js, позволяющая нарушителю выполнить произвольные команды

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4624-1

почти 2 года назад

Security update for kubevirt, virt-api-container, virt-controller-container, virt-exportproxy-container, virt-exportserver-container, virt-handler-container, virt-launcher-container, virt-libguestfs-tools-container, virt-operator-container, virt-pr-helper-container

EPSS: Критический
suse-cvrf логотип

SUSE-SU-2023:4492-1

почти 2 года назад

Security update for nghttp2

EPSS: Критический
suse-cvrf логотип

SUSE-SU-2023:4295-1

почти 2 года назад

Security update for nodejs10

EPSS: Критический

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2023-45143

Undici is an HTTP/1.1 client written from scratch for Node.js. Prior to version 5.26.2, Undici already cleared Authorization headers on cross-origin redirects, but did not clear `Cookie` headers. By design, `cookie` headers are forbidden request headers, disallowing them to be set in RequestInit.headers in browser environments. Since undici handles headers more liberally than the spec, there was a disconnect from the assumptions the spec made, and undici's implementation of fetch. As such this may lead to accidental leakage of cookie to a third-party site or a malicious attacker who can control the redirection target (ie. an open redirector) to leak the cookie to the third party site. This was patched in version 5.26.2. There are no known workarounds.

CVSS3: 3.9
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-45143

Undici is an HTTP/1.1 client written from scratch for Node.js. Prior to version 5.26.2, Undici already cleared Authorization headers on cross-origin redirects, but did not clear `Cookie` headers. By design, `cookie` headers are forbidden request headers, disallowing them to be set in RequestInit.headers in browser environments. Since undici handles headers more liberally than the spec, there was a disconnect from the assumptions the spec made, and undici's implementation of fetch. As such this may lead to accidental leakage of cookie to a third-party site or a malicious attacker who can control the redirection target (ie. an open redirector) to leak the cookie to the third party site. This was patched in version 5.26.2. There are no known workarounds.

CVSS3: 3.9
0%
Низкий
около 2 лет назад
msrc логотип
CVSS3: 3.5
0%
Низкий
около 2 лет назад
debian логотип
CVE-2023-45143

Undici is an HTTP/1.1 client written from scratch for Node.js. Prior t ...

CVSS3: 3.9
0%
Низкий
около 2 лет назад
github логотип
GHSA-wqq4-5wpv-mx2g

Undici's cookie header not cleared on cross-origin redirect in fetch

CVSS3: 3.9
0%
Низкий
около 2 лет назад
fstec логотип
BDU:2023-07356

Уязвимость клиента HTTP/1.1 undici программной платформы Node.js, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 3.5
0%
Низкий
около 2 лет назад
ubuntu логотип
CVE-2023-39333

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
0%
Низкий
около 1 года назад
redhat логотип
CVE-2023-39333

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-39333

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
0%
Низкий
около 1 года назад
debian логотип
CVE-2023-39333

Maliciously crafted export names in an imported WebAssembly module can ...

CVSS3: 5.3
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2023-44487

The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.

CVSS3: 7.5
94%
Критический
около 2 лет назад
redhat логотип
CVE-2023-44487

The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.

CVSS3: 7.5
94%
Критический
около 2 лет назад
nvd логотип
CVE-2023-44487

The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.

CVSS3: 7.5
94%
Критический
около 2 лет назад
msrc логотип
CVE-2023-44487

MITRE: CVE-2023-44487 HTTP/2 Rapid Reset Attack

94%
Критический
около 2 лет назад
debian логотип
CVE-2023-44487

The HTTP/2 protocol allows a denial of service (server resource consum ...

CVSS3: 7.5
94%
Критический
около 2 лет назад
github логотип
GHSA-wj24-gwh6-mgh8

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
0%
Низкий
около 1 года назад
fstec логотип
BDU:2023-08046

Уязвимость модуля WebAssembly программной платформы Node.js, позволяющая нарушителю выполнить произвольные команды

CVSS3: 5.3
0%
Низкий
около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:4624-1

Security update for kubevirt, virt-api-container, virt-controller-container, virt-exportproxy-container, virt-exportserver-container, virt-handler-container, virt-launcher-container, virt-libguestfs-tools-container, virt-operator-container, virt-pr-helper-container

94%
Критический
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2023:4492-1

Security update for nghttp2

94%
Критический
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2023:4295-1

Security update for nodejs10

94%
Критический
почти 2 года назад

Уязвимостей на страницу