2026年7月30日星期四

Node.js Multiple Vulnerabilities

Node.js Multiple Vulnerabilities

Release Date: 30 Jul 2026

RISK: Medium Risk

TYPE: Servers - Other Servers

Multiple vulnerabilities have been identified in Node.js. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege, security restriction bypass, sensitive information disclosure, remote code execution, data manipulation and spoofing on the targeted system.


Impact

  • Denial of Service
  • Elevation of Privilege
  • Spoofing
  • Remote Code Execution
  • Information Disclosure
  • Data Manipulation
  • Security Restriction Bypass

System / Technologies affected

  • Node.js versions prior to 22.23.2 (LTS)
  • Node.js versions prior to 24.18.1 (LTS)
  • Node.js versions prior to 26.5.1 (Current)

Solutions

Before installation of the software, please visit the vendor web-site for more details.

  • Update to Node.js version 22.23.2 (LTS)
  • Update to Node.js version 24.18.1 (LTS)
  • Update to Node.js version 26.5.1 (Current)

Vulnerability Identifier


Source


Related Link

沒有留言:

發佈留言

思科 Secure Firewall Management Center 軟件資料洩露漏洞

思科 Secure Firewall Management Center 軟件資料洩露漏洞 發佈日期: 2026年07月30日 風險: 高度風險...