nodejs vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the nodejs package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • L
CVE-2024-9143

*
  • L
CVE-2024-41996

*
  • M
CVE-2024-6119

*
  • L
CVE-2024-5535

*
  • L
CVE-2024-4741

*
  • L
CVE-2024-4603

*
  • L
CVE-2024-2511

*
  • M
CVE-2023-30590

<12.22.9~dfsg-1ubuntu3.5
  • L
CVE-2024-0727

*
  • L
CVE-2023-6237

*
  • L
Out-of-bounds Write

*
  • M
HTTP Request Smuggling

<12.22.9~dfsg-1ubuntu3.2
  • M
OS Command Injection

<12.22.9~dfsg-1ubuntu3.2
  • L
Improper Check for Unusual or Exceptional Conditions

*
  • M
CVE-2023-5363

*
  • M
CVE-2023-32559

<12.22.9~dfsg-1ubuntu3.6
  • M
CVE-2023-32002

<12.22.9~dfsg-1ubuntu3.6
  • M
CVE-2023-32006

<12.22.9~dfsg-1ubuntu3.6
  • L
Excessive Iteration

*
  • L
Inefficient Regular Expression Complexity

*
  • L
Improper Authentication

*
  • M
Allocation of Resources Without Limits or Throttling

<12.22.9~dfsg-1ubuntu3.4
  • M
Resource Exhaustion

*
  • L
Out-of-bounds Read

*
  • L
Improper Certificate Validation

*
  • L
Improper Certificate Validation

*
  • L
Improper Certificate Validation

*
  • M
Untrusted Search Path

<12.22.9~dfsg-1ubuntu3.4
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<12.22.9~dfsg-1ubuntu3.3
  • M
NULL Pointer Dereference

<12.22.9~dfsg-1ubuntu3.3
  • M
Use After Free

<12.22.9~dfsg-1ubuntu3.3
  • M
Information Exposure

<12.22.9~dfsg-1ubuntu3.3
  • M
Double Free

<12.22.9~dfsg-1ubuntu3.3
  • M
HTTP Request Smuggling

<12.22.9~dfsg-1ubuntu3.2
  • M
HTTP Request Smuggling

<12.22.9~dfsg-1ubuntu3.2
  • M
OS Command Injection

<12.22.9~dfsg-1ubuntu3.2
  • M
HTTP Request Smuggling

<12.22.9~dfsg-1ubuntu3.2
  • M
Use of a Broken or Risky Cryptographic Algorithm

<12.22.9~dfsg-1ubuntu3.1
  • M
OS Command Injection

<12.22.9~dfsg-1ubuntu3.1
  • M
OS Command Injection

<12.22.9~dfsg-1ubuntu3.1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<12.22.9~dfsg-1ubuntu3.1
  • L
Integer Overflow or Wraparound

*
  • L
Use of a Broken or Risky Cryptographic Algorithm

*