Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2026-58039

7 дней назад

(A flaw in Node.js Permission Model enforcement allows process.report w ...)

CVSS3: 3.3
EPSS: Низкий
redhat логотип

CVE-2026-58039

7 дней назад

A flaw was found in Node.js. The permission model enforcement, specifically related to `process.report` functionality, allows an attacker to write or overwrite files in locations outside of the intended secure paths. This vulnerability can lead to the disclosure of sensitive information or bypass the security boundaries designed to protect the system.

CVSS3: 4.4
EPSS: Низкий
nvd логотип

CVE-2026-58039

7 дней назад

A flaw in Node.js Permission Model enforcement allows process.report writes (and overwrites) files outside --allow-fs-write paths. This can lead to confidentiality impact or bypass of the intended security boundary under affected configurations. This vulnerability affects Node.js **22.x**, **24.x**, and **26.x**.

CVSS3: 3.3
EPSS: Низкий
debian логотип

CVE-2026-58039

7 дней назад

A flaw in Node.js Permission Model enforcement allows process.report w ...

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-4qw5-6jhx-9hfx

7 дней назад

A flaw in Node.js Permission Model enforcement allows process.report writes (and overwrites) files outside --allow-fs-write paths. This can lead to confidentiality impact or bypass of the intended security boundary under affected configurations. This vulnerability affects Node.js **22.x**, **24.x**, and **26.x**.

CVSS3: 3.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-58039

(A flaw in Node.js Permission Model enforcement allows process.report w ...)

CVSS3: 3.3
0%
Низкий
7 дней назад
redhat логотип
CVE-2026-58039

A flaw was found in Node.js. The permission model enforcement, specifically related to `process.report` functionality, allows an attacker to write or overwrite files in locations outside of the intended secure paths. This vulnerability can lead to the disclosure of sensitive information or bypass the security boundaries designed to protect the system.

CVSS3: 4.4
0%
Низкий
7 дней назад
nvd логотип
CVE-2026-58039

A flaw in Node.js Permission Model enforcement allows process.report writes (and overwrites) files outside --allow-fs-write paths. This can lead to confidentiality impact or bypass of the intended security boundary under affected configurations. This vulnerability affects Node.js **22.x**, **24.x**, and **26.x**.

CVSS3: 3.3
0%
Низкий
7 дней назад
debian логотип
CVE-2026-58039

A flaw in Node.js Permission Model enforcement allows process.report w ...

CVSS3: 3.3
0%
Низкий
7 дней назад
github логотип
GHSA-4qw5-6jhx-9hfx

A flaw in Node.js Permission Model enforcement allows process.report writes (and overwrites) files outside --allow-fs-write paths. This can lead to confidentiality impact or bypass of the intended security boundary under affected configurations. This vulnerability affects Node.js **22.x**, **24.x**, and **26.x**.

CVSS3: 3.3
0%
Низкий
7 дней назад

Уязвимостей на страницу