Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
nodejs node.js 5.7.1 vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2022-31150
undici is an HTTP/1.1 client, written from scratch for Node.js. It is possible to inject CRLF sequences into request headers in undici in versions less than 5.7.1. A fix was released in version 5.8.0. Sanitizing all HTTP headers from untrusted sources to eliminate `\r\n` is a wor...
Nodejs Undici
7.5
CVSSv3
CVE-2017-11499
Node.js v4.0 through v4.8.3, all versions of v5.x, v6.0 through v6.11.0, v7.0 through v7.10.0, and v8.0 through v8.1.3 was susceptible to hash flooding remote DoS attacks as the HashTable seed was constant across a given released version of Node.js. This was a result of building ...
Nodejs Node.js 6.0.0
Nodejs Node.js 5.10.0
Nodejs Node.js 4.3.0
Nodejs Node.js 7.8.0
Nodejs Node.js 4.0.0
Nodejs Node.js 4.5.0
Nodejs Node.js 6.2.0
Nodejs Node.js 4.3.2
Nodejs Node.js 4.6.2
Nodejs Node.js 4.4.4
Nodejs Node.js 6.11.1
Nodejs Node.js 7.7.0
Nodejs Node.js 6.9.0
Nodejs Node.js 5.12.0
Nodejs Node.js 6.3.0
Nodejs Node.js 5.2.0
Nodejs Node.js 4.3.1
Nodejs Node.js 5.5.0
Nodejs Node.js 7.4.0
Nodejs Node.js 5.9.0
Nodejs Node.js 8.1.1
Nodejs Node.js 8.1.3
7.5
CVSSv3
CVE-2016-3956
The CLI in npm prior to 2.15.1 and 3.x prior to 3.8.3, as used in Node.js 0.10 prior to 0.10.44, 0.12 prior to 0.12.13, 4 prior to 4.4.2, and 5 prior to 5.10.0, includes bearer tokens with arbitrary requests, which allows remote HTTP servers to obtain sensitive information by rea...
Ibm Sdk
Nodejs Node.js 0.10.9
Nodejs Node.js 4.3.0
Nodejs Node.js 0.10.11
Nodejs Node.js 4.0.0
Nodejs Node.js 0.10.21
Nodejs Node.js 0.10.4
Nodejs Node.js 4.3.2
Nodejs Node.js 0.12.4
Nodejs Node.js 0.10.41
Nodejs Node.js 0.10.20
Nodejs Node.js 0.10.18
Nodejs Node.js 0.10.39
Nodejs Node.js 0.10.29
Nodejs Node.js 5.2.0
Nodejs Node.js 0.10.31
Nodejs Node.js 4.3.1
Nodejs Node.js 0.10.2
Nodejs Node.js 5.5.0
Nodejs Node.js 5.9.0
Nodejs Node.js 0.10.30
Nodejs Node.js 0.12.7
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-30065
CVE-2024-5843
CVE-2024-30080
code execution
CVE-2024-4577
CVE-2024-26169
wireless
remote code execution
CVE-2024-36103
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started