Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 25

Количество 25

ubuntu логотип

CVE-2026-58043

около 2 месяцев назад

A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.

CVSS3: 8.4
EPSS: Низкий
redhat логотип

CVE-2026-58043

около 2 месяцев назад

A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-58043

около 2 месяцев назад

A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.

CVSS3: 8.4
EPSS: Низкий
msrc логотип

CVE-2026-58043

около 1 месяца назад

A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-58043

около 2 месяцев назад

A flaw in Node.js Permission Model enforcement can over-grant filesyst ...

CVSS3: 8.4
EPSS: Низкий
github логотип

GHSA-qrq2-c54w-wgqm

около 2 месяцев назад

A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2026:62583

12 дней назад

Important: nodejs:24 security update

EPSS: Низкий
rocky логотип

RLSA-2026:62219

12 дней назад

Important: nodejs:22 security update

EPSS: Низкий
rocky логотип

RLSA-2026:61386

14 дней назад

Important: nodejs:24 security update

EPSS: Низкий
rocky логотип

RLSA-2026:61383

14 дней назад

Important: nodejs:22 security update

EPSS: Низкий
rocky логотип

RLSA-2026:61377

12 дней назад

Important: nodejs24 security, bug fix, and enhancement update

EPSS: Низкий
rocky логотип

RLSA-2026:61376

12 дней назад

Important: nodejs22 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-62583-0

12 дней назад

ELSA-2026-62583-0: nodejs:24 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-62219-0

13 дней назад

ELSA-2026-62219-0: nodejs:22 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-61386-0

14 дней назад

ELSA-2026-61386-0: nodejs:24 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-61383-0

14 дней назад

ELSA-2026-61383-0: nodejs:22 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-61377-0

14 дней назад

ELSA-2026-61377-0: nodejs24 security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-61376-0

14 дней назад

ELSA-2026-61376-0: nodejs22 security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21545-1

около 1 месяца назад

Security update for nodejs22

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3557-1

около 1 месяца назад

Security update for nodejs22

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-58043

A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.

CVSS3: 8.4
0%
Низкий
около 2 месяцев назад
redhat логотип
CVE-2026-58043

A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.

CVSS3: 7.5
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2026-58043

A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.

CVSS3: 8.4
0%
Низкий
около 2 месяцев назад
msrc логотип
CVE-2026-58043

A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2026-58043

A flaw in Node.js Permission Model enforcement can over-grant filesyst ...

CVSS3: 8.4
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-qrq2-c54w-wgqm

A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.

CVSS3: 7.5
0%
Низкий
около 2 месяцев назад
rocky логотип
RLSA-2026:62583

Important: nodejs:24 security update

12 дней назад
rocky логотип
RLSA-2026:62219

Important: nodejs:22 security update

12 дней назад
rocky логотип
RLSA-2026:61386

Important: nodejs:24 security update

14 дней назад
rocky логотип
RLSA-2026:61383

Important: nodejs:22 security update

14 дней назад
rocky логотип
RLSA-2026:61377

Important: nodejs24 security, bug fix, and enhancement update

12 дней назад
rocky логотип
RLSA-2026:61376

Important: nodejs22 security update

12 дней назад
oracle-oval логотип
ELSA-2026-62583-0

ELSA-2026-62583-0: nodejs:24 security update (IMPORTANT)

12 дней назад
oracle-oval логотип
ELSA-2026-62219-0

ELSA-2026-62219-0: nodejs:22 security update (IMPORTANT)

13 дней назад
oracle-oval логотип
ELSA-2026-61386-0

ELSA-2026-61386-0: nodejs:24 security update (IMPORTANT)

14 дней назад
oracle-oval логотип
ELSA-2026-61383-0

ELSA-2026-61383-0: nodejs:22 security update (IMPORTANT)

14 дней назад
oracle-oval логотип
ELSA-2026-61377-0

ELSA-2026-61377-0: nodejs24 security, bug fix, and enhancement update (IMPORTANT)

14 дней назад
oracle-oval логотип
ELSA-2026-61376-0

ELSA-2026-61376-0: nodejs22 security update (IMPORTANT)

14 дней назад
suse-cvrf логотип
openSUSE-SU-2026:21545-1

Security update for nodejs22

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3557-1

Security update for nodejs22

около 1 месяца назад

Уязвимостей на страницу