7.5
CVSSv2

CVE-2021-22930

Published: 07/10/2021 Updated: 05/01/2024
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Node.js prior to 16.6.0, 14.17.4, and 12.22.4 is vulnerable to a use after free attack where an attacker might be able to exploit the memory corruption, to change process behavior.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

nodejs node.js

netapp nextgen api -

siemens sinec infrastructure network services

debian debian linux 10.0

Vendor Advisories

A flaw was found in Nodejs, where it is vulnerable to a use-after-free attack This flaw allows an attacker to exploit the memory corruption, which causes a change in the process behavior The highest threat from this vulnerability is to confidentiality and integrity ...
Nodejs before version 1660, 14174 and 12224 is vulnerable to a use after free attack where an attacker might be able to exploit the memory corruption, to change process behavior ...

ICS Advisories

Siemens SINEC INS
Critical Infrastructure Sectors: Energy