v8-12.4-devel

Direct Vulnerabilities

Known vulnerabilities in the v8-12.4-devel package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Incorrect Behavior Order: Authorization Before Parsing and Canonicalization

*
  • H
Expired Pointer Dereference

*
  • H
Resource Exhaustion

*
  • M
External Control of File Name or Path

*
  • L
External Control of File Name or Path

*
  • M
CVE-2026-69198

*
  • H
CVE-2026-69192

*
  • M
Key Exchange without Entity Authentication

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • M
Incorrect Implementation of Authentication Algorithm

*
  • M
Server-Side Request Forgery (SSRF)

*
  • H
Expired Pointer Dereference

*
  • H
Cross-site Scripting (XSS)

<3:12.4.254.21-1.22.23.1.1.module+el8.10.0+24500+8eb51621
  • M
HTTP Request Smuggling

*
  • M
Misinterpretation of Input

*
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • H
Allocation of Resources Without Limits or Throttling

<3:12.4.254.21-1.22.23.1.2.module+el8.10.0+24556+e9352af2
  • M
Improper Null Termination

*
  • H
Unchecked Input for Loop Condition

<3:12.4.254.21-1.22.23.1.2.module+el8.10.0+24556+e9352af2
  • H
Inefficient Regular Expression Complexity

<3:12.4.254.21-1.22.23.1.2.module+el8.10.0+24556+e9352af2
  • H
Allocation of Resources Without Limits or Throttling

<3:12.4.254.21-1.22.23.1.1.module+el8.10.0+24500+8eb51621
  • H
Improper Certificate Validation

<3:12.4.254.21-1.22.23.1.1.module+el8.10.0+24500+8eb51621
  • H
Improper Null Termination

<3:12.4.254.21-1.22.23.1.1.module+el8.10.0+24500+8eb51621
  • H
Authentication Bypass

<3:12.4.254.21-1.22.23.1.1.module+el8.10.0+24500+8eb51621
  • H
Allocation of Resources Without Limits or Throttling

<3:12.4.254.21-1.22.23.1.1.module+el8.10.0+24500+8eb51621
  • H
Authentication Bypass

<3:12.4.254.21-1.22.23.1.1.module+el8.10.0+24500+8eb51621
  • H
Information Exposure

<3:12.4.254.21-1.22.23.1.1.module+el8.10.0+24500+8eb51621
  • H
Incorrect Execution-Assigned Permissions

<3:12.4.254.21-1.22.23.1.1.module+el8.10.0+24500+8eb51621
  • L
Incorrect Use of Privileged APIs

*
  • M
CRLF Injection

*
  • H
Improper Certificate Validation

*
  • H
Improper Validation of Syntactic Correctness of Input

<3:12.4.254.21-1.22.23.1.1.module+el8.10.0+24500+8eb51621
  • H
Improper Verification of Source of a Communication Channel

*
  • H
Improper Verification of Source of a Communication Channel

<3:12.4.254.21-1.22.23.1.1.module+el8.10.0+24500+8eb51621
  • H
Allocation of Resources Without Limits or Throttling

<3:12.4.254.21-1.22.23.1.1.module+el8.10.0+24500+8eb51621
  • L
Improper Validation of Syntactic Correctness of Input

*
  • M
Resource Exhaustion

*
  • M
Covert Timing Channel

*
  • L
Arbitrary Code Injection

*
  • M
Resource Exhaustion

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • L
Improper Initialization

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • M
Information Exposure

*
  • M
Improper Handling of Inconsistent Special Elements

*
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<3:12.4.254.21-1.22.22.2.1.module+el8.10.0+24148+847b6786
  • L
Incorrect Execution-Assigned Permissions

*
  • M
Reversible One-Way Hash

*
  • L
Direct Request ('Forced Browsing')

*
  • M
Unchecked Input for Loop Condition

*
  • M
Executable Regular Expression Error

*
  • M
Inefficient Regular Expression Complexity

*
  • H
Reachable Assertion

<3:12.4.254.21-1.22.22.2.1.module+el8.10.0+24148+847b6786
  • M
Resource Exhaustion

*
  • L
Resource Exhaustion

*
  • H
Inefficient Regular Expression Complexity

<3:12.4.254.21-1.22.22.2.1.module+el8.10.0+24148+847b6786
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Improper Handling of Highly Compressed Data (Data Amplification)

*
  • M
CRLF Injection

*
  • H
HTTP Request Smuggling

<3:12.4.254.21-1.22.22.2.1.module+el8.10.0+24148+847b6786
  • H
Allocation of Resources Without Limits or Throttling

<3:12.4.254.21-1.22.22.2.1.module+el8.10.0+24148+847b6786
  • H
Uncaught Exception

<3:12.4.254.21-1.22.22.2.1.module+el8.10.0+24148+847b6786
  • M
Inefficient Regular Expression Complexity

*
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Inefficient Regular Expression Complexity

*
  • H
Uncaught Exception

<3:12.4.254.21-1.22.22.2.1.module+el8.10.0+24148+847b6786
  • L
Use of Uninitialized Resource

*
  • H
Uncaught Exception

<3:12.4.254.21-1.22.22.0.1.module+el8.10.0+23904+2c92f862
  • H
Improper Preservation of Permissions

<3:12.4.254.21-1.22.22.0.1.module+el8.10.0+23904+2c92f862
  • H
Exposure of System Data to an Unauthorized Control Sphere

<3:12.4.254.21-1.22.22.0.1.module+el8.10.0+23904+2c92f862
  • H
Allocation of Resources Without Limits or Throttling

<3:12.4.254.21-1.22.22.0.1.module+el8.10.0+23904+2c92f862
  • H
Improper Preservation of Permissions

<3:12.4.254.21-1.22.22.0.1.module+el8.10.0+23904+2c92f862
  • H
Uncaught Exception

<3:12.4.254.21-1.22.22.0.1.module+el8.10.0+23904+2c92f862
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • M
Use After Free

*
  • L
OS Command Injection

*
  • M
CVE-2023-30588

*
  • M
CVE-2023-30589

*
  • M
Improper Validation of Integrity Check Value

*
  • M
CVE-2023-30590

*
  • L
Information Exposure

*
  • H
Numeric Truncation Error

<3:12.4.254.21-1.22.16.0.2.module+el8.10.0+23338+c5a38893
  • L
Inefficient Regular Expression Complexity

*
  • L
Inefficient Regular Expression Complexity

*
  • H
CVE-2023-30581

*
  • M
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • M
HTTP Request Smuggling

*
  • H
Uncaught Exception

<3:12.4.254.21-1.22.16.0.1.module+el8.10.0+23140+4056b950
  • H
Memory Leak

<3:12.4.254.21-1.22.16.0.1.module+el8.10.0+23140+4056b950
  • L
Memory Leak

*
  • L
Buffer Under-read

*
  • M
HTTP Request Smuggling

*
  • M
Improper Cross-boundary Removal of Sensitive Data

*
  • H
Heap-based Buffer Overflow

<3:12.4.254.21-1.22.15.0.1.module+el8.10.0+23068+28ff2340
  • M
Use After Free

<3:12.4.254.21-1.22.15.0.1.module+el8.10.0+23068+28ff2340
  • M
Detection of Error Condition Without Action

*
  • H
Resource Exhaustion

<3:12.4.254.21-1.22.13.1.1.module+el8.10.0+22759+46b58560
  • H
Incorrect Authorization

<3:12.4.254.21-1.22.13.1.1.module+el8.10.0+22759+46b58560
  • H
Use of Insufficiently Random Values

<3:12.4.254.21-1.22.13.1.1.module+el8.10.0+22759+46b58560