Known vulnerabilities in undici - page 3
Vendor:
Node.js
Software:
undici
Software CPE:
cpe:2.3:a:nodejs:undici:*:*:*:*:*:nodejs:*:*
Website:
https://github.com/nodejs/
Total vulnerabilities:
44
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
6.28.1
7.29.1
8.10.2
8.10.1
8.10.0
8.9.0
7.29.0
6.28.0
8.8.0
8.7.0
8.6.0
8.5.0
7.28.0
6.27.0
8.4.1
8.4.0
7.27.2
7.27.1
7.27.0
7.26.0
6.26.0
8.3.0
8.2.0
6.25.0
8.1.0
7.25.0
8.0.3
7.24.8
8.0.2
8.0.1
8.0.0
7.24.7
7.24.6
7.24.5
7.24.4
7.24.3
6.24.1
7.24.2
7.24.1
7.24.0
7.23.0
6.24.0
7.22.0
7.21.0
7.20.0
7.19.2
7.19.1
7.19.0
7.18.2
7.18.1
7.18.0
6.23.0
7.17.0
6.22.0
7.16.0
7.15.0
7.14.0
7.13.0
7.12.0
7.11.0
7.10.0
6.21.3
7.9.0
7.8.0
7.7.0
7.6.0
5.29.0
6.21.2
7.5.0
7.4.0
7.3.0
7.2.3
6.21.1
5.28.5
7.2.2
7.2.1
7.2.0
7.1.1
7.1.0
7.0.0
6.21.0
6.20.1
6.20.0
6.19.8
6.19.7
6.19.6
6.19.5
6.19.4
6.19.3
6.19.2
6.19.1
6.19.0
6.18.2
6.18.1
6.18.0
6.17.0
6.16.1
6.16.0
6.15.0
6.14.1
6.14.0
6.13.0
6.12.0
6.11.1
6.11.0
5.28.4
6.10.2
6.10.1
6.10.0
6.9.0
6.8.0
6.7.1
6.7.0
6.6.2
6.6.1
5.28.3
6.6.0
6.5.0
6.4.0
6.3.0
6.2.1
6.2.0
6.1.0
6.0.1
6.0.0
5.28.2
5.28.1
5.28.0
5.27.2
5.27.1
5.27.0
5.26.5
5.26.4
5.26.3
5.26.2
5.26.1
5.26.0
5.23.4
5.25.3
5.25.2
5.25.1
5.25.0
5.24.0
5.23.0
5.22.1
5.22.0
5.21.2
5.21.1
5.21.0
5.20.0
5.19.1
5.19.0
5.18.0
5.17.1
5.17.0
5.16.0
5.15.2
5.15.1
5.15.0
5.14.0
5.13.0
5.12.0
5.11.0
5.10.0
5.9.1
5.8.2
5.8.1
5.8.0
5.7.0
5.6.1
5.6.0
5.5.1
5.5.0
5.4.0
5.3.0
5.2.0
5.1.1
5.1.0
5.0.0
4.16.0
4.15.1
4.15.0
4.14.1
4.14.0
4.13.0
4.12.2
4.12.1
4.12.0
4.11.3
4.11.2
4.11.1
4.11.0
4.10.4
4.10.3
4.10.2
4.10.1
4.10.0
4.9.5
4.9.4
4.9.3
4.9.2
4.9.1
4.9.0
4.8.2
4.8.1
4.8.0
4.7.3
4.7.2
4.7.1
4.7.0
4.6.0
4.5.1
4.5.0
4.4.7
4.4.6
4.4.5
4.4.4
4.4.3
4.4.2
4.4.1
4.4.0
4.3.1
4.3.0
4.2.2
4.2.1
4.2.0
4.1.1
4.1.0
4.0.0
3.3.6
3.3.5
3.3.4
3.3.3
3.3.2
3.3.1
3.3.0
3.2.0
3.1.0
3.0.0
2.2.1
2.2.0
2.1.1
2.1.0
2.0.7
2.0.6
2.0.5
2.0.4
2.0.3
2.0.2
2.0.1
2.0.0
1.3.1
1.3.0
1.2.6
1.2.5
1.2.4
1.2.2
1.2.1
1.2.0
1.1.0
1.0.3
1.0.2
1.0.1
1.0.0
Vulnerabilities (44)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU67166 - Server-Side Request Forgery (SSRF) CVE-2022-35949 |
CWE-918 | Medium | 5.8.2 | 11.09.2022 |
SB2022091109 SB2022091110 SB2022091217 and 4 more |
||
| #VU67165 - Exposure of resource to wrong sphere CVE-2022-31151 |
CWE-668 | Low | 5.8.0 | 11.09.2022 |
SB2022091108 SB2022092664 |
||
| #VU67164 - Improper Neutralization of CRLF Sequences ('CRLF Injection') CVE-2022-35948 |
CWE-93 | Medium | 5.8.2 | 11.09.2022 |
SB2022091109 SB2022091110 SB2022091217 and 7 more |
||
| #VU67163 - Improper Neutralization of CRLF Sequences ('CRLF Injection') CVE-2022-31150 |
CWE-93 | Medium | 5.8.0 | 11.09.2022 |
SB2022091108 SB2022091110 SB2022091217 and 2 more |
Showing elements 41 - 60 out of 44