Where
-Infinity
0

npm/node:sqliteSQL Injection

Risk 31
Severity
5.3
First published (updated )

OpenJS Foundation Node.jsAn incomplete fix has been identified in Node.js: HTTPS Agent TLS session reuse skips hostname verif…

Risk 37
Severity
6.3
First published (updated )

OpenJS Foundation Node.jsA flaw in Node.js HTTP/2 server API can cause servers to keep accepting data even after sending a `G…

Risk 28
Severity
5.3
First published (updated )

oss-secFwd: Node.js security updates for all active lease lines, June 2026

oss-secFwd: Node.js security updates for all active lease lines, June 2026

Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Critical vm2 Sandbox Escape Vulnerabilities Expose Node.js Apps to Full Host RCE

First published (updated )
Social
reddit

OpenJS Foundation Node.js 26End of life details

EOL
Apr 30, 2029
Support Ends
Oct 27, 2027
First published (updated )

OpenJS Foundation Node.jsA flaw in Node.js HMAC verification uses a non-constant-time comparison when validating user-provide…

Risk 19
Severity
4
First published (updated )

OpenJS Foundation Node.jsA flaw in V8's string hashing mechanism causes integer-like strings to be hashed to their numeric va…

Risk 19
Severity
4
First published (updated )

OpenJS Foundation Node.jsA flaw in Node.js Permission Model filesystem enforcement leaves `fs.realpathSync.native()` without …

Risk 5
Severity
1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

OpenJS Foundation Node.jsAn incomplete fix for CVE-2024-36137 leaves `FileHandle.chmod()` and `FileHandle.chown()` in the pro…

Risk 19
Severity
3.3
First published (updated )

OpenJS Foundation Node.jsA memory leak occurs in Node.js HTTP/2 servers when a client sends WINDOW_UPDATE frames on stream 0 …

Risk 29
Severity
5.3
First published (updated )

OpenJS Foundation Node.jsA flaw in Node.js URL processing causes an assertion failure in native code when `url.format()` is c…

Risk 19
Severity
4
First published (updated )

OpenJS Foundation Node.jsInput Validation

Risk 35
Severity
5.7
First published (updated )

OpenJS Foundation Node.js 25Reached end of life

EOL
Jun 1, 2026
Support Ends
Apr 1, 2026
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

OpenJS Foundation Node.js 24End of life details

EOL
Apr 30, 2028
Support Ends
Oct 20, 2026
First published (updated )

OpenJS Foundation Node.js 22Out of support

EOL
Apr 30, 2027
Support Ends
Oct 21, 2025
First published (updated )

OpenJS Foundation Node.js 22Out of support

EOL
Apr 30, 2027
Support Ends
Oct 21, 2025
First published (updated )

OpenJS Foundation Node.js 20Reached end of life

EOL
Apr 30, 2026
Support Ends
Oct 22, 2024
First published (updated )

OpenJS Foundation Node.js 20Reached end of life

EOL
Apr 30, 2026
Support Ends
Oct 22, 2024
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203