nodejs:20/npm vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the nodejs:20/npm package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
OS Command Injection

*
  • L
Inefficient Regular Expression Complexity

*
  • H
HTTP Request Smuggling

<1:10.8.2-1.20.19.2.1.module+el8.10.0+23139+21ba74c5
  • H
Uncaught Exception

<1:10.8.2-1.20.19.2.1.module+el8.10.0+23139+21ba74c5
  • H
Memory Leak

<1:10.8.2-1.20.19.2.1.module+el8.10.0+23139+21ba74c5
  • M
Use After Free

<1:10.8.2-1.20.19.1.1.module+el8.10.0+23054+5431297f
  • H
Use of Insufficiently Random Values

<1:10.8.2-1.20.18.2.1.module+el8.10.0+22767+a3309b10
  • H
Incorrect Authorization

<1:10.8.2-1.20.18.2.1.module+el8.10.0+22767+a3309b10
  • H
Resource Exhaustion

<1:10.8.2-1.20.18.2.1.module+el8.10.0+22767+a3309b10
  • L
Inefficient Regular Expression Complexity

*
  • M
Incorrect Permission Assignment for Critical Resource

<1:10.8.1-1.20.16.0.1.module+el8.10.0+22203+a88c8310
  • M
CVE-2024-22018

<1:10.8.1-1.20.16.0.1.module+el8.10.0+22203+a88c8310
  • M
CVE-2024-22020

<1:10.8.1-1.20.16.0.1.module+el8.10.0+22203+a88c8310
  • M
Resource Exhaustion

<1:10.8.1-1.20.16.0.1.module+el8.10.0+22203+a88c8310
  • H
HTTP Request Smuggling

<1:10.5.0-1.20.12.2.2.module+el8.9.0+21743+0b3f1be2
  • H
Detection of Error Condition Without Action

<1:10.5.0-1.20.12.2.2.module+el8.9.0+21743+0b3f1be2
  • H
Resource Exhaustion

<1:10.5.0-1.20.12.2.2.module+el8.9.0+21743+0b3f1be2
  • H
Resource Exhaustion

<1:10.5.0-1.20.12.2.2.module+el8.9.0+21743+0b3f1be2
  • H
Improper Privilege Management

<1:10.2.4-1.20.11.1.1.module+el8.9.0+21380+12032667
  • H
Directory Traversal

<1:10.2.4-1.20.11.1.1.module+el8.9.0+21380+12032667
  • H
Directory Traversal

<1:10.2.4-1.20.11.1.1.module+el8.9.0+21380+12032667
  • H
Buffer Under-read

<1:10.5.0-1.20.12.2.2.module+el8.9.0+21743+0b3f1be2
  • H
Incomplete Documentation

<1:10.2.4-1.20.11.1.1.module+el8.9.0+21380+12032667
  • H
Resource Exhaustion

<1:10.2.4-1.20.11.1.1.module+el8.9.0+21380+12032667
  • H
Arbitrary Code Injection

<1:10.2.4-1.20.11.1.1.module+el8.9.0+21380+12032667
  • H
Covert Timing Channel

<1:10.2.4-1.20.11.1.1.module+el8.9.0+21380+12032667
  • H
Information Exposure

<1:10.1.0-1.20.8.1.1.module+el8.9.0+20473+c4e3d824
  • H
Directory Traversal

<1:10.1.0-1.20.8.1.1.module+el8.9.0+20473+c4e3d824
  • H
Improper Validation of Integrity Check Value

<1:10.1.0-1.20.8.1.1.module+el8.9.0+20473+c4e3d824
  • H
Arbitrary Code Injection

<1:10.1.0-1.20.8.1.1.module+el8.9.0+20473+c4e3d824
  • H
Directory Traversal

<1:10.1.0-1.20.8.1.1.module+el8.9.0+20473+c4e3d824
  • H
Resource Exhaustion

<1:10.1.0-1.20.8.1.1.module+el8.9.0+20473+c4e3d824