nodejs-nodemon

Direct Vulnerabilities

Known vulnerabilities in the nodejs-nodemon package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Improper Certificate Validation

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Improper Verification of Source of a Communication Channel

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Improper Validation of Syntactic Correctness of Input

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Improper Verification of Source of a Communication Channel

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Incorrect Execution-Assigned Permissions

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Improper Certificate Validation

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Allocation of Resources Without Limits or Throttling

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Improper Null Termination

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Authentication Bypass

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Allocation of Resources Without Limits or Throttling

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Authentication Bypass

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Information Exposure

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Cross-site Scripting (XSS)

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Allocation of Resources Without Limits or Throttling

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Improper Validation of Syntactic Correctness of Input

<0:3.0.3-3.module+el9.8.0+24355+35d95b59
  • H
Inefficient Regular Expression Complexity

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • H
Reachable Assertion

<0:3.0.1-1.module+el9.7.0+24193+41b7b572
  • H
Allocation of Resources Without Limits or Throttling

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • H
Uncaught Exception

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • H
Reversible One-Way Hash

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • H
Incorrect Execution-Assigned Permissions

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • H
Direct Request ('Forced Browsing')

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • H
Missing Release of Resource after Effective Lifetime

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • H
Information Exposure

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • H
Improper Handling of Inconsistent Special Elements

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • H
Improper Verification of Source of a Communication Channel

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<0:3.0.1-1.module+el9.7.0+24193+41b7b572
  • H
Uncaught Exception

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • H
CRLF Injection

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • H
Allocation of Resources Without Limits or Throttling

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • H
HTTP Request Smuggling

<0:3.0.3-3.module+el9.7.0+24166+51c9666b
  • M
Unchecked Input for Loop Condition

*
  • M
Inefficient Regular Expression Complexity

*
  • M
Executable Regular Expression Error

*
  • H
Uncaught Exception

<0:3.0.1-1.module+el9.7.0+23895+0637d423
  • H
Allocation of Resources Without Limits or Throttling

<0:3.0.1-1.module+el9.7.0+23895+0637d423
  • H
Uncaught Exception

<0:3.0.1-1.module+el9.7.0+23895+0637d423
  • H
Improper Preservation of Permissions

<0:3.0.1-1.module+el9.7.0+23895+0637d423
  • H
Exposure of System Data to an Unauthorized Control Sphere

<0:3.0.1-1.module+el9.7.0+23895+0637d423
  • H
Improper Preservation of Permissions

<0:3.0.1-1.module+el9.7.0+23895+0637d423
  • M
Inefficient Regular Expression Complexity

*
  • H
Inefficient Regular Expression Complexity

<0:3.0.1-1.module+el9.7.0+24193+41b7b572
  • M
Inefficient Regular Expression Complexity

*
  • M
Improper Handling of Highly Compressed Data (Data Amplification)

*
  • H
Numeric Truncation Error

<0:3.0.1-1.module+el9.6.0+23339+d3c8acfa
  • L
Inefficient Regular Expression Complexity

*
  • H
HTTP Request Smuggling

<0:3.0.1-1.module+el9.6.0+23146+be9976bd
  • H
Memory Leak

<0:3.0.1-1.module+el9.6.0+23062+9e7801b9
  • H
Uncaught Exception

<0:3.0.1-1.module+el9.6.0+23062+9e7801b9
  • H
Heap-based Buffer Overflow

<0:3.0.1-1.module+el9.6.0+23062+9e7801b9
  • H
Use After Free

<0:3.0.1-1.module+el9.6.0+23062+9e7801b9
  • M
Resource Exhaustion

<0:3.0.1-1.module+el9.5.0+22773+9a359385
  • H
Incorrect Authorization

<0:3.0.1-1.module+el9.3.0.z+20478+84a9f781
  • M
Use of Insufficiently Random Values

<0:3.0.1-1.module+el9.5.0+22773+9a359385
  • M
Excessive Platform Resource Consumption within a Loop

*
  • M
Resource Exhaustion

<0:3.0.1-1.module+el9.3.0+19762+d716bf3b
  • M
Incorrect Permission Assignment for Critical Resource

<0:3.0.1-1.module+el9.3.0.z+20478+84a9f781
  • M
CVE-2024-22020

<0:3.0.1-1.module+el9.3.0+19762+d716bf3b
  • M
CVE-2024-22018

<0:3.0.1-1.module+el9.3.0.z+20478+84a9f781
  • H
Detection of Error Condition Without Action

<0:3.0.1-1.module+el9.3.0+19762+d716bf3b
  • H
Resource Exhaustion

<0:3.0.1-1.module+el9.3.0+19762+d716bf3b
  • H
HTTP Request Smuggling

<0:3.0.1-1.module+el9.3.0+19762+d716bf3b
  • H
Buffer Under-read

<0:3.0.1-1.module+el9.3.0+19762+d716bf3b
  • H
Resource Exhaustion

<0:3.0.1-1.module+el9.3.0+19762+d716bf3b
  • H
Improper Privilege Management

<0:3.0.1-1.module+el9.3.0.z+20478+84a9f781
  • H
Directory Traversal

<0:3.0.1-1.module+el9.3.0.z+20478+84a9f781
  • H
Directory Traversal

<0:3.0.1-1.module+el9.3.0.z+20478+84a9f781
  • H
Incomplete Documentation

<0:3.0.1-1.module+el9.3.0.z+20478+84a9f781
  • H
Resource Exhaustion

<0:3.0.1-1.module+el9.3.0+19762+d716bf3b
  • H
Arbitrary Code Injection

<0:3.0.1-1.module+el9.3.0+19762+d716bf3b
  • H
Covert Timing Channel

<0:3.0.1-1.module+el9.3.0+19762+d716bf3b
  • H
Directory Traversal

<0:3.0.1-1.module+el9.3.0.z+20478+84a9f781
  • H
Information Exposure

<0:3.0.1-1.module+el9.2.0.z+19753+58118bc0
  • H
Improper Validation of Integrity Check Value

<0:3.0.1-1.module+el9.2.0.z+19753+58118bc0
  • H
Arbitrary Code Injection

<0:3.0.1-1.module+el9.2.0.z+19753+58118bc0
  • H
Resource Exhaustion

<0:3.0.1-1.module+el9.2.0.z+19753+58118bc0
  • H
Arbitrary Code Injection

<0:3.0.1-1.module+el9.2.0.z+19753+58118bc0
  • H
Information Exposure

<0:3.0.1-1.module+el9.2.0.z+19753+58118bc0
  • H
Reliance on Untrusted Inputs in a Security Decision

<0:3.0.1-1.module+el9.2.0.z+19753+58118bc0
  • H
Inefficient Regular Expression Complexity

<0:3.0.1-1.module+el9.2.0.z+19753+58118bc0
  • M
CVE-2023-30588

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • M
CVE-2023-30589

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • M
CVE-2023-30581

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • M
CVE-2023-30590

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • H
Out-of-bounds Write

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • H
Use of Insufficiently Random Values

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • H
Resource Exhaustion

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • H
Use of Insufficiently Random Values

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • M
Inefficient Regular Expression Complexity

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • M
CRLF Injection

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • M
Untrusted Search Path

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • M
CVE-2023-23919

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • M
Incorrect Authorization

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • M
Buffer Access with Incorrect Length Value

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • M
Inefficient Regular Expression Complexity

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • M
Resource Exhaustion

<0:2.0.20-2.module+el9.2.0.z+18497+a402347c
  • M
Reliance on Reverse DNS Resolution for a Security-Critical Action

<0:2.0.20-1.module+el9.1.0.z+17326+318294bb
  • M
Inefficient Regular Expression Complexity

<0:2.0.20-1.module+el9.1.0.z+17326+318294bb
  • M
HTTP Request Smuggling

<0:2.0.20-2.el9_1
  • M
HTTP Request Smuggling

<0:2.0.19-1.el9_0
  • M
HTTP Request Smuggling

<0:2.0.19-1.el9_0
  • M
Improper Check or Handling of Exceptional Conditions

<0:2.0.19-1.el9_0
  • M
HTTP Request Smuggling

<0:2.0.19-1.el9_0
  • M
Open Redirect

<0:2.0.19-1.el9_0
  • M
Improper Cross-boundary Removal of Sensitive Data

<0:2.0.19-1.el9_0
  • M
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

<0:2.0.20-2.el9_1
  • M
Resource Exhaustion

<0:2.0.19-1.el9_0
  • M
Resource Exhaustion

<0:2.0.19-1.el9_0
  • M
Resource Exhaustion

<0:2.0.19-1.el9_0
  • M
Resource Exhaustion

<0:2.0.19-1.el9_0