Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 18

Количество 18

ubuntu логотип

CVE-2023-39333

почти 2 года назад

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2023-39333

больше 2 лет назад

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2023-39333

почти 2 года назад

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-39333

почти 2 года назад

Maliciously crafted export names in an imported WebAssembly module can ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-wj24-gwh6-mgh8

почти 2 года назад

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2023-08046

почти 3 года назад

Уязвимость модуля WebAssembly программной платформы Node.js, позволяющая нарушителю выполнить произвольные команды

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4207-1

больше 2 лет назад

Security update for nodejs18

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4155-1

больше 2 лет назад

Security update for nodejs18

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4150-1

больше 2 лет назад

Security update for nodejs18

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4133-1

больше 2 лет назад

Security update for nodejs18

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4132-1

больше 2 лет назад

Security update for nodejs18

EPSS: Низкий
rocky логотип

RLSA-2023:5869

7 месяцев назад

Important: nodejs:18 security update

EPSS: Низкий
rocky логотип

RLSA-2023:5849

7 месяцев назад

Important: nodejs:18 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2023-5869

больше 2 лет назад

ELSA-2023-5869: nodejs:18 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-5849

больше 2 лет назад

ELSA-2023-5849: 18 security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2023:7205

больше 2 лет назад

Important: nodejs:20 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2023-7205

больше 2 лет назад

ELSA-2023-7205: nodejs:20 security update (IMPORTANT)

EPSS: Низкий
redos логотип

ROS-20240916-03

почти 2 года назад

Множественные уязвимости nodejs

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-39333

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
1%
Низкий
почти 2 года назад
redhat логотип
CVE-2023-39333

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
1%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-39333

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
1%
Низкий
почти 2 года назад
debian логотип
CVE-2023-39333

Maliciously crafted export names in an imported WebAssembly module can ...

CVSS3: 5.3
1%
Низкий
почти 2 года назад
github логотип
GHSA-wj24-gwh6-mgh8

Maliciously crafted export names in an imported WebAssembly module can inject JavaScript code. The injected code may be able to access data and functions that the WebAssembly module itself does not have access to, similar to as if the WebAssembly module was a JavaScript module. This vulnerability affects users of any active release line of Node.js. The vulnerable feature is only available if Node.js is started with the `--experimental-wasm-modules` command line option.

CVSS3: 5.3
1%
Низкий
почти 2 года назад
fstec логотип
BDU:2023-08046

Уязвимость модуля WebAssembly программной платформы Node.js, позволяющая нарушителю выполнить произвольные команды

CVSS3: 5.3
1%
Низкий
почти 3 года назад
suse-cvrf логотип
SUSE-SU-2023:4207-1

Security update for nodejs18

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:4155-1

Security update for nodejs18

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:4150-1

Security update for nodejs18

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:4133-1

Security update for nodejs18

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:4132-1

Security update for nodejs18

больше 2 лет назад
rocky логотип
RLSA-2023:5869

Important: nodejs:18 security update

7 месяцев назад
rocky логотип
RLSA-2023:5849

Important: nodejs:18 security update

7 месяцев назад
oracle-oval логотип
ELSA-2023-5869

ELSA-2023-5869: nodejs:18 security update (IMPORTANT)

больше 2 лет назад
oracle-oval логотип
ELSA-2023-5849

ELSA-2023-5849: 18 security update (IMPORTANT)

больше 2 лет назад
rocky логотип
RLSA-2023:7205

Important: nodejs:20 security update

больше 2 лет назад
oracle-oval логотип
ELSA-2023-7205

ELSA-2023-7205: nodejs:20 security update (IMPORTANT)

больше 2 лет назад
redos логотип
ROS-20240916-03

Множественные уязвимости nodejs

CVSS3: 7.5
почти 2 года назад

Уязвимостей на страницу