Known vulnerabilities in nodejs-js-yaml
Vendor:
openEuler
Software:
nodejs-js-yaml
Software CPE:
cpe:2.3:o:openeuler:nodejs-js-yaml:*:*:*:*:*:openeuler:*:*
Website:
https://www.openeuler.org/
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU151446 - Inefficient Algorithmic Complexity CVE-2026-84375 |
CWE-407 | Medium | 3.10.0-3 | 19.09.2026 |
SB20260919189 SB20260919187 SB20260925206 |
||
| #VU121666 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\') CVE-2025-64718 |
CWE-1321 | Medium | 3.10.0-2 | 19.01.2026 |
SB2026011995 SB2026011999 SB20260119100 and 29 more |