node-undici vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the node-undici package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • L
Use of Insufficiently Random Values

*
  • M
Incorrect Authorization

<5.28.4+dfsg1+~cs23.12.11-1
  • L
CVE-2024-30261

<5.28.4+dfsg1+~cs23.12.11-1
  • M
CVE-2024-24758

<5.28.4+dfsg1+~cs23.12.11-1
  • L
Information Exposure

<5.26.3+dfsg1+~cs23.10.12-1
  • H
Inefficient Regular Expression Complexity

<5.19.1+dfsg1+~cs20.10.9.5-1
  • M
Arbitrary Code Injection

<5.19.1+dfsg1+~cs20.10.9.5-1
  • M
Arbitrary Code Injection

<5.8.2+dfsg1+~cs18.9.18.1-1
  • C
Server-Side Request Forgery (SSRF)

<5.8.2+dfsg1+~cs18.9.18.1-1
  • M
CRLF Injection

<5.8.0+dfsg1+~cs18.9.16-1
  • M
Open Redirect

<5.8.0+dfsg1+~cs18.9.16-1
  • M
Improper Certificate Validation

<5.6.1+dfsg1+~cs18.9.16-1