nodejs-packaging

Direct Vulnerabilities

Known vulnerabilities in the nodejs-packaging package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Improper Certificate Validation

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Improper Verification of Source of a Communication Channel

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Improper Validation of Syntactic Correctness of Input

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Improper Verification of Source of a Communication Channel

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Incorrect Execution-Assigned Permissions

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Improper Certificate Validation

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Allocation of Resources Without Limits or Throttling

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Improper Null Termination

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Authentication Bypass

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Allocation of Resources Without Limits or Throttling

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Authentication Bypass

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Information Exposure

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Cross-site Scripting (XSS)

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Allocation of Resources Without Limits or Throttling

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Improper Validation of Syntactic Correctness of Input

<0:2021.06-6.module+el9.8.0+24355+35d95b59
  • H
Inefficient Regular Expression Complexity

<0:2021.06-6.module+el9.7.0+24193+41b7b572
  • H
Reachable Assertion

<0:2021.06-6.module+el9.7.0+24193+41b7b572
  • H
Inefficient Regular Expression Complexity

<0:2021.06-6.module+el9.7.0+24193+41b7b572
  • H
Allocation of Resources Without Limits or Throttling

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
Uncaught Exception

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
Reversible One-Way Hash

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
Incorrect Execution-Assigned Permissions

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
Direct Request ('Forced Browsing')

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
Missing Release of Resource after Effective Lifetime

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
Information Exposure

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
Improper Handling of Inconsistent Special Elements

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
Improper Verification of Source of a Communication Channel

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<0:2021.06-6.module+el9.7.0+24193+41b7b572
  • H
Uncaught Exception

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
CRLF Injection

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
Allocation of Resources Without Limits or Throttling

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
HTTP Request Smuggling

<0:2021.06-6.module+el9.7.0+24166+51c9666b
  • H
Uncaught Exception

<0:2021.06-5.module+el9.7.0+23895+0637d423
  • H
Allocation of Resources Without Limits or Throttling

<0:2021.06-5.module+el9.7.0+23895+0637d423
  • H
Uncaught Exception

<0:2021.06-5.module+el9.7.0+23895+0637d423
  • H
Improper Preservation of Permissions

<0:2021.06-5.module+el9.7.0+23895+0637d423
  • H
Exposure of System Data to an Unauthorized Control Sphere

<0:2021.06-5.module+el9.7.0+23895+0637d423
  • H
Improper Preservation of Permissions

<0:2021.06-5.module+el9.7.0+23895+0637d423
  • H
Numeric Truncation Error

<0:2021.06-4.module+el9.6.0+23339+d3c8acfa
  • H
HTTP Request Smuggling

<0:2021.06-4.module+el9.6.0+23146+be9976bd
  • H
Memory Leak

<0:2021.06-4.module+el9.6.0+23062+9e7801b9
  • H
Uncaught Exception

<0:2021.06-4.module+el9.6.0+23062+9e7801b9
  • H
Heap-based Buffer Overflow

<0:2021.06-4.module+el9.6.0+23062+9e7801b9
  • H
Use After Free

<0:2021.06-4.module+el9.6.0+23062+9e7801b9
  • M
Resource Exhaustion

<0:2021.06-4.module+el9.5.0+22773+9a359385
  • H
Incorrect Authorization

<0:2021.06-4.module+el9.3.0+19518+63aad52d
  • M
Use of Insufficiently Random Values

<0:2021.06-4.module+el9.5.0+22773+9a359385
  • M
Resource Exhaustion

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
Incorrect Permission Assignment for Critical Resource

<0:2021.06-4.module+el9.3.0+19518+63aad52d
  • L
CVE-2024-22018

<0:2021.06-4.module+el9.3.0+19518+63aad52d
  • M
CVE-2024-22020

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Detection of Error Condition Without Action

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Resource Exhaustion

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
HTTP Request Smuggling

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Buffer Under-read

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Resource Exhaustion

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Improper Privilege Management

<0:2021.06-4.module+el9.3.0+19518+63aad52d
  • H
Directory Traversal

<0:2021.06-4.module+el9.3.0+19518+63aad52d
  • H
Directory Traversal

<0:2021.06-4.module+el9.3.0+19518+63aad52d
  • H
Incomplete Documentation

<0:2021.06-4.module+el9.3.0+19518+63aad52d
  • H
Resource Exhaustion

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Arbitrary Code Injection

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Covert Timing Channel

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Directory Traversal

<0:2021.06-4.module+el9.3.0+19518+63aad52d
  • H
Information Exposure

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Improper Validation of Integrity Check Value

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Arbitrary Code Injection

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Resource Exhaustion

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Arbitrary Code Injection

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Information Exposure

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Reliance on Untrusted Inputs in a Security Decision

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Inefficient Regular Expression Complexity

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
CVE-2023-30588

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
CVE-2023-30589

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
CVE-2023-30581

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
CVE-2023-30590

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Out-of-bounds Write

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Use of Insufficiently Random Values

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Resource Exhaustion

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • H
Use of Insufficiently Random Values

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
Inefficient Regular Expression Complexity

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
CRLF Injection

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
Untrusted Search Path

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
CVE-2023-23919

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
Incorrect Authorization

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
Buffer Access with Incorrect Length Value

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
Inefficient Regular Expression Complexity

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
Resource Exhaustion

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
Reliance on Reverse DNS Resolution for a Security-Critical Action

<0:2021.06-4.module+el9.1.0+15718+e52ec601
  • M
Inefficient Regular Expression Complexity

<0:2021.06-4.module+el9.1.0+15718+e52ec601