nodejs:20/nodejs

Direct Vulnerabilities

Known vulnerabilities in the nodejs:20/nodejs package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
Unchecked Input for Loop Condition

*
  • H
Reachable Assertion

*
  • M
Inefficient Regular Expression Complexity

*
  • M
Directory Traversal

*
  • M
Improper Handling of Highly Compressed Data (Data Amplification)

*
  • M
Inefficient Regular Expression Complexity

*
  • M
Inefficient Regular Expression Complexity

*
  • H
Link Following

*
  • H
Uncaught Exception

<1:20.20.0-1.module+el8.10.0+23905+c49b2aec
  • M
Allocation of Resources Without Limits or Throttling

*
  • H
Improper Preservation of Permissions

<1:20.20.0-1.module+el8.10.0+23905+c49b2aec
  • H
Exposure of System Data to an Unauthorized Control Sphere

<1:20.20.0-1.module+el8.10.0+23905+c49b2aec
  • H
Allocation of Resources Without Limits or Throttling

<1:20.20.0-1.module+el8.10.0+23905+c49b2aec
  • H
Improper Preservation of Permissions

<1:20.20.0-1.module+el8.10.0+23905+c49b2aec
  • H
Uncaught Exception

<1:20.20.0-1.module+el8.10.0+23905+c49b2aec
  • H
Directory Traversal

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Use After Free

*
  • M
OS Command Injection

*
  • L
Inefficient Regular Expression Complexity

*
  • H
HTTP Request Smuggling

<1:20.19.2-1.module+el8.10.0+23139+21ba74c5
  • H
Uncaught Exception

<1:20.19.2-1.module+el8.10.0+23139+21ba74c5
  • H
Memory Leak

<1:20.19.2-1.module+el8.10.0+23139+21ba74c5
  • M
Use After Free

<1:20.19.1-1.module+el8.10.0+23054+5431297f
  • H
Use of Insufficiently Random Values

<1:20.18.2-1.module+el8.10.0+22767+a3309b10
  • H
Incorrect Authorization

<1:20.18.2-1.module+el8.10.0+22767+a3309b10
  • H
Resource Exhaustion

<1:20.18.2-1.module+el8.10.0+22767+a3309b10
  • L
Inefficient Regular Expression Complexity

*
  • M
Incorrect Permission Assignment for Critical Resource

<1:20.16.0-1.module+el8.10.0+22203+a88c8310
  • M
CVE-2024-22018

<1:20.16.0-1.module+el8.10.0+22203+a88c8310
  • M
CVE-2024-22020

<1:20.16.0-1.module+el8.10.0+22203+a88c8310
  • M
Resource Exhaustion

<1:20.16.0-1.module+el8.10.0+22203+a88c8310
  • H
HTTP Request Smuggling

<1:20.12.2-2.module+el8.9.0+21743+0b3f1be2
  • H
Detection of Error Condition Without Action

<1:20.12.2-2.module+el8.9.0+21743+0b3f1be2
  • H
Resource Exhaustion

<1:20.12.2-2.module+el8.9.0+21743+0b3f1be2
  • H
Resource Exhaustion

<1:20.12.2-2.module+el8.9.0+21743+0b3f1be2
  • H
Improper Privilege Management

<1:20.11.1-1.module+el8.9.0+21380+12032667
  • H
Directory Traversal

<1:20.11.1-1.module+el8.9.0+21380+12032667
  • H
Directory Traversal

<1:20.11.1-1.module+el8.9.0+21380+12032667
  • H
Buffer Under-read

<1:20.12.2-2.module+el8.9.0+21743+0b3f1be2
  • H
Incomplete Documentation

<1:20.11.1-1.module+el8.9.0+21380+12032667
  • H
Resource Exhaustion

<1:20.11.1-1.module+el8.9.0+21380+12032667
  • H
Arbitrary Code Injection

<1:20.11.1-1.module+el8.9.0+21380+12032667
  • H
Covert Timing Channel

<1:20.11.1-1.module+el8.9.0+21380+12032667
  • H
Information Exposure

<1:20.8.1-1.module+el8.9.0+20473+c4e3d824
  • H
Directory Traversal

<1:20.8.1-1.module+el8.9.0+20473+c4e3d824
  • H
Improper Validation of Integrity Check Value

<1:20.8.1-1.module+el8.9.0+20473+c4e3d824
  • H
Arbitrary Code Injection

<1:20.8.1-1.module+el8.9.0+20473+c4e3d824
  • H
Directory Traversal

<1:20.8.1-1.module+el8.9.0+20473+c4e3d824
  • H
Resource Exhaustion

<1:20.8.1-1.module+el8.9.0+20473+c4e3d824