Known vulnerabilities in nodejs (Alpine package)

Software CPE: cpe:2.3:o:alpine:nodejs_alpine_package:*:*:*:*:*:alpine_linux:*:*
Total vulnerabilities: 28
Public exploits: 2
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting nodejs (Alpine package) nodejs (Alpine package) is affected by 28 known vulnerabilities: 3 high, 20 medium, 5 low Critical High Medium Low

Vulnerabilities (28)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU52194 - Incorrect Regular Expression
CVE-2021-27290
CWE-185 Medium
No
No
14.16.1-r1 12.03.2021 SB2021041364
SB2021070819
SB2021101939
and 32 more
#VU50955 - Reliance on Reverse DNS Resolution for a Security-Critical Action
CVE-2021-22884
CWE-350 Medium
No
No
12.21.0-r0, 14.16.0-r0 25.02.2021 SB2021022530
SB2021022532
SB2021022616
and 38 more
#VU50954 - Resource Management Errors
CVE-2021-22883
CWE-399 Medium
No
No
12.21.0-r0, 14.16.0-r0 25.02.2021 SB2021022530
SB2021022532
SB2021022614
and 36 more
#VU49254 - Use After Free
CVE-2020-8265
CWE-416 Medium
No
No
14.15.4-r0 04.01.2021 SB2021010419
SB2021010704
SB2021010705
and 33 more
#VU49253 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-8287
CWE-444 Medium
Available
No
14.15.4-r0 04.01.2021 SB2021010419
SB2021010706
SB2021010707
and 33 more
#VU48569 - Resource Management Errors
CVE-2020-8277
CWE-399 Medium
Available
No
14.15.1-r0 19.11.2020 SB2020112003
SB2020112005
SB2020102133
and 23 more
#VU47218 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-8201
CWE-444 High
No
No
12.18.4-r0 18.09.2020 SB2020091028
SB2020091029
SB2020100608
and 12 more
#VU47248 - Buffer overflow
CVE-2020-8252
CWE-120 High
No
No
12.18.4-r0 18.09.2020 SB2020100117
SB2020091824
SB2020091825
and 19 more
#VU28539 - Memory corruption
CVE-2020-8174
CWE-119 High
No
No
12.18.3-r0 03.06.2020 SB2020060305
SB2020060607
SB2020072216
and 20 more
#VU28538 - Resource exhaustion
CVE-2020-11080
CWE-400 Medium
No
No
12.18.3-r0 03.06.2020 SB2020060305
SB2020060607
SB2020060703
and 42 more
#VU28537 - Improper Authorization
CVE-2020-8172
CWE-285 Medium
No
No
12.18.3-r0 03.06.2020 SB2020060305
SB2020060364
SB2020060365
and 9 more
#VU20340 - Resource Management Errors
CVE-2019-9517
CWE-399 Medium
No
No
10.16.3-r0 20.08.2019 SB2019082303
SB2019082610
SB2019090202
and 37 more
#VU20199 - Resource exhaustion
CVE-2019-9518
CWE-400 Medium
No
No
10.16.3-r0 13.08.2019 SB2019081326
SB2019091011
SB2019091102
and 26 more
#VU20198 - Resource exhaustion
CVE-2019-9516
CWE-400 Medium
No
No
10.16.3-r0 13.08.2019 SB2019081323
SB2019081602
SB2019081606
and 41 more
#VU20197 - Resource exhaustion
CVE-2019-9513
CWE-400 Medium
No
No
10.16.3-r0 13.08.2019 SB2019081323
SB2019081326
SB2019081602
and 51 more
#VU20196 - Resource exhaustion
CVE-2019-9511
CWE-400 Medium
No
No
10.16.3-r0 13.08.2019 SB2019081323
SB2019081326
SB2019081602
and 55 more
#VU16171 - Improper input validation
CVE-2018-12116
CWE-20 Low
No
No
8.14.0-r0 29.11.2018 SB2018112906
SB2019012702
SB2019012803
and 4 more
#VU14498 - Out-of-bounds write
CVE-2018-12115
CWE-787 Low
No
No
8.11.4-r0 22.08.2018 SB2018082209
SB2018082313
SB2018082315
and 7 more
#VU13376 - Improper input validation
CVE-2018-7161
CWE-20 Low
No
No
8.11.3-r0 16.06.2018 SB2018061803
SB2018071402
SB2020032103
and 4 more
#VU11858 - NULL Pointer Dereference
CVE-2018-1000168
CWE-476 Low
No
No
8.11.3-r0 17.04.2018 SB2018041213
SB2018071402
SB2018061331
and 4 more


Showing elements 1 - 20 out of 28