Количество 7
Количество 7
GHSA-58qx-3vcg-4xpx
ws: Uninitialized memory disclosure
CVE-2026-45736
ws is an open source WebSocket client and server for Node.js. Prior to 8.20.1, the websocket.close() implementation is vulnerable to uninitialized memory disclosure when a TypedArray is passed as the reason argument. This vulnerability is fixed in 8.20.1.
CVE-2026-45736
ws is an open source WebSocket client and server for Node.js. Prior to 8.20.1, the websocket.close() implementation is vulnerable to uninitialized memory disclosure when a TypedArray is passed as the reason argument. This vulnerability is fixed in 8.20.1.
CVE-2026-45736
ws is an open source WebSocket client and server for Node.js. Prior to 8.20.1, the websocket.close() implementation is vulnerable to uninitialized memory disclosure when a TypedArray is passed as the reason argument. This vulnerability is fixed in 8.20.1.
CVE-2026-45736
ws: Uninitialized memory disclosure
CVE-2026-45736
ws is an open source WebSocket client and server for Node.js. Prior to ...
BDU:2026-09331
Уязвимость библиотеки Node.js WebSocket, связанная с использованием неинициализированного ресурса, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-58qx-3vcg-4xpx ws: Uninitialized memory disclosure | CVSS3: 4.4 | 1% Низкий | 3 месяца назад | |
CVE-2026-45736 ws is an open source WebSocket client and server for Node.js. Prior to 8.20.1, the websocket.close() implementation is vulnerable to uninitialized memory disclosure when a TypedArray is passed as the reason argument. This vulnerability is fixed in 8.20.1. | CVSS3: 4.4 | 1% Низкий | 3 месяца назад | |
CVE-2026-45736 ws is an open source WebSocket client and server for Node.js. Prior to 8.20.1, the websocket.close() implementation is vulnerable to uninitialized memory disclosure when a TypedArray is passed as the reason argument. This vulnerability is fixed in 8.20.1. | CVSS3: 7.5 | 1% Низкий | 3 месяца назад | |
CVE-2026-45736 ws is an open source WebSocket client and server for Node.js. Prior to 8.20.1, the websocket.close() implementation is vulnerable to uninitialized memory disclosure when a TypedArray is passed as the reason argument. This vulnerability is fixed in 8.20.1. | CVSS3: 4.4 | 1% Низкий | 3 месяца назад | |
CVE-2026-45736 ws: Uninitialized memory disclosure | 1% Низкий | 2 месяца назад | ||
CVE-2026-45736 ws is an open source WebSocket client and server for Node.js. Prior to ... | CVSS3: 4.4 | 1% Низкий | 3 месяца назад | |
BDU:2026-09331 Уязвимость библиотеки Node.js WebSocket, связанная с использованием неинициализированного ресурса, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 4.4 | 1% Низкий | 3 месяца назад |
Уязвимостей на страницу