Direct Vulnerabilities

Known vulnerabilities in the nodejs25 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
Missing Handler

*
  • H
Origin Validation Error

*
  • H
NULL Pointer Dereference

*
  • H
Improper Certificate Validation

*
  • M
Improper Handling of Length Parameter Inconsistency

*
  • M
Improper Handling of Highly Compressed Data (Data Amplification)

*
  • M
Information Exposure Through Caching

*
  • M
Detection of Error Condition Without Action

*
  • M
Improper Update of Reference Count

*
  • H
Improper Validation of Specified Type of Input

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Improper Output Neutralization for Logs

*
  • M
NULL Pointer Dereference

*
  • L
External Control of File Name or Path

*
  • M
Improper Neutralization

*
  • H
Information Exposure Through Caching

*
  • M
Key Exchange without Entity Authentication

*
  • M
Information Exposure Through Caching

*
  • M
HTTP Request Smuggling

*
  • M
CRLF Injection

*
  • M
External Control of File Name or Path

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • M
Incorrect Implementation of Authentication Algorithm

*
  • H
Allocation of Resources Without Limits or Throttling

<0:25.9.0-1.1.hum1
  • H
Inefficient Regular Expression Complexity

<0:25.9.0-1.1.hum1
  • H
Unchecked Input for Loop Condition

<0:25.9.0-1.3.hum1
  • H
Inefficient Regular Expression Complexity

*
  • M
Information Exposure

<0:25.9.0-1.1.hum1
  • H
Authentication Bypass

<0:25.9.0-1.1.hum1
  • H
Allocation of Resources Without Limits or Throttling

<0:25.9.0-1.1.hum1
  • M
Improper Null Termination

<0:25.9.0-1.1.hum1
  • M
Authentication Bypass

<0:25.9.0-1.1.hum1
  • L
Incorrect Use of Privileged APIs

<0:25.9.0-1.1.hum1
  • M
Allocation of Resources Without Limits or Throttling

<0:25.9.0-1.1.hum1
  • M
Improper Certificate Validation

<0:25.9.0-1.1.hum1
  • L
Incorrect Execution-Assigned Permissions

<0:25.9.0-1.1.hum1
  • M
Inefficient Regular Expression Complexity

<0:25.9.0-1.3.hum1
  • M
Resource Exhaustion

<0:25.9.0-1.1.hum1
  • H
Improper Verification of Source of a Communication Channel

<0:25.9.0-1.1.hum1
  • L
Improper Verification of Source of a Communication Channel

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Improper Certificate Validation

<0:25.9.0-1.1.hum1
  • L
Improper Validation of Syntactic Correctness of Input

*
  • M
Improper Validation of Syntactic Correctness of Input

<0:25.9.0-1.1.hum1
  • M
CRLF Injection

*
  • M
Allocation of Resources Without Limits or Throttling

<0:25.9.0-1.1.hum1
  • M
CRLF Injection

*
  • M
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<0:25.9.0-1.1.hum1
  • M
Cross-site Scripting (XSS)

*
  • L
Incorrect Execution-Assigned Permissions

<0:25.9.0-1.hum1
  • M
Improper Preservation of Permissions

<0:25.9.0-1.hum1
  • M
Uncaught Exception

<0:25.9.0-1.hum1
  • M
Allocation of Resources Without Limits or Throttling

<0:25.9.0-1.hum1
  • M
Allocation of Resources Without Limits or Throttling

<0:25.9.0-1.hum1
  • H
Uncaught Exception

<0:25.9.0-1.hum1
  • H
Improper Preservation of Permissions

<0:25.9.0-1.hum1
  • H
Exposure of System Data to an Unauthorized Control Sphere

<0:25.9.0-1.hum1
  • M
Improper Preservation of Permissions

<0:25.9.0-1.hum1
  • M
Reversible One-Way Hash

<0:25.9.0-1.hum1