2026年6月22日星期一

Node.js Multiple Vulnerabilities

Node.js Multiple Vulnerabilities

Release Date: 22 Jun 2026

RISK: Medium Risk

TYPE: Servers - Other Servers

Multiple vulnerabilities have been identified in Node.js. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, data manipulation, security restriction bypass, spoofing and sensitive information disclosure on the targeted system.


Impact

  • Denial of Service
  • Security Restriction Bypass
  • Data Manipulation
  • Information Disclosure
  • Spoofing

System / Technologies affected

  • Node.js versions prior to 22.23.0 (LTS)
  • Node.js versions prior to 24.17.0 (LTS)
  • Node.js versions prior to 26.3.1 (Current)

Solutions

Before installation of the software, please visit the vendor web-site for more details.

  • Update to Node.js version 22.23.0 (LTS)
  • Update to Node.js version 24.17.0 (LTS)
  • Update to Node.js version 26.3.1 (Current)

Vulnerability Identifier


Source


Related Link

沒有留言:

發佈留言

PaperCut 多個漏洞

PaperCut 多個漏洞 發佈日期: 2026年08月31日 於PaperCut發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發繞過保安限制及遠端執行程式碼。   注意: CVE-2026-82078 和 CVE-2026-81578 正在被廣泛利用。針對 CVE-202...