Количество 25
Количество 25
CVE-2026-58043
A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.
CVE-2026-58043
A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.
CVE-2026-58043
A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.
CVE-2026-58043
A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.
CVE-2026-58043
A flaw in Node.js Permission Model enforcement can over-grant filesyst ...
GHSA-qrq2-c54w-wgqm
A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**.
RLSA-2026:62583
Important: nodejs:24 security update
RLSA-2026:62219
Important: nodejs:22 security update
RLSA-2026:61386
Important: nodejs:24 security update
RLSA-2026:61383
Important: nodejs:22 security update
RLSA-2026:61377
Important: nodejs24 security, bug fix, and enhancement update
RLSA-2026:61376
Important: nodejs22 security update
ELSA-2026-62583-0
ELSA-2026-62583-0: nodejs:24 security update (IMPORTANT)
ELSA-2026-62219-0
ELSA-2026-62219-0: nodejs:22 security update (IMPORTANT)
ELSA-2026-61386-0
ELSA-2026-61386-0: nodejs:24 security update (IMPORTANT)
ELSA-2026-61383-0
ELSA-2026-61383-0: nodejs:22 security update (IMPORTANT)
ELSA-2026-61377-0
ELSA-2026-61377-0: nodejs24 security, bug fix, and enhancement update (IMPORTANT)
ELSA-2026-61376-0
ELSA-2026-61376-0: nodejs22 security update (IMPORTANT)
openSUSE-SU-2026:21545-1
Security update for nodejs22
SUSE-SU-2026:3557-1
Security update for nodejs22
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-58043 A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**. | CVSS3: 8.4 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-58043 A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**. | CVSS3: 7.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-58043 A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**. | CVSS3: 8.4 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-58043 A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**. | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
CVE-2026-58043 A flaw in Node.js Permission Model enforcement can over-grant filesyst ... | CVSS3: 8.4 | 0% Низкий | около 2 месяцев назад | |
GHSA-qrq2-c54w-wgqm A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. Under `--permission`, an attacker who is granted access to one path can abuse boundary handling to read from or write to paths outside the intended filesystem allowlist. This vulnerability affects Node.js **main**, **22.x**, **24.x**, and **26.x**. | CVSS3: 7.5 | 0% Низкий | около 2 месяцев назад | |
RLSA-2026:62583 Important: nodejs:24 security update | 12 дней назад | |||
RLSA-2026:62219 Important: nodejs:22 security update | 12 дней назад | |||
RLSA-2026:61386 Important: nodejs:24 security update | 14 дней назад | |||
RLSA-2026:61383 Important: nodejs:22 security update | 14 дней назад | |||
RLSA-2026:61377 Important: nodejs24 security, bug fix, and enhancement update | 12 дней назад | |||
RLSA-2026:61376 Important: nodejs22 security update | 12 дней назад | |||
ELSA-2026-62583-0 ELSA-2026-62583-0: nodejs:24 security update (IMPORTANT) | 12 дней назад | |||
ELSA-2026-62219-0 ELSA-2026-62219-0: nodejs:22 security update (IMPORTANT) | 13 дней назад | |||
ELSA-2026-61386-0 ELSA-2026-61386-0: nodejs:24 security update (IMPORTANT) | 14 дней назад | |||
ELSA-2026-61383-0 ELSA-2026-61383-0: nodejs:22 security update (IMPORTANT) | 14 дней назад | |||
ELSA-2026-61377-0 ELSA-2026-61377-0: nodejs24 security, bug fix, and enhancement update (IMPORTANT) | 14 дней назад | |||
ELSA-2026-61376-0 ELSA-2026-61376-0: nodejs22 security update (IMPORTANT) | 14 дней назад | |||
openSUSE-SU-2026:21545-1 Security update for nodejs22 | около 1 месяца назад | |||
SUSE-SU-2026:3557-1 Security update for nodejs22 | около 1 месяца назад |
Уязвимостей на страницу