node-js
10 articles with this tag
CRITICAL
MEDIUM
MEDIUM
CRITICAL
CRITICAL
CRITICAL
HIGH
MEDIUM
CRITICAL
HIGH
Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS
CVE-2024-36137 A vulnerability has been identified in Node.js, affecting users of the experimental permission model when the --allow-fs-write flag is used.
Node.js Permission Model do not operate on file descriptors, however, operations such as fs.fchown or fs.fchmod can use a "read-only" file descriptor to change the owner and permissions of a file.
[webapps] MikroORM 7.0.13 - SQL Injection
[NEU] [hoch] vm2: Schwachstelle ermöglicht Codeausführung
13 new critical holes in JavaScript sandbox allow execution of arbitrary code
vm2 Node.js Library Vulnerabilities Enable Sandbox Escape and Arbitrary Code Execution
CVE-2026-21637 HackerOne: CVE-2026-21637 TLS PSK/ALPN Callback Exceptions Bypass Error Handlers
[NEU] [mittel] Node.js: Mehrere Schwachstellen
[UPDATE] [hoch] Node.js: Mehrere Schwachstellen
Siemens SIDIS Prime