Known vulnerabilities in rh-nodejs12-nodejs-nodemon (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:rh-nodejs12-nodejs-nodemon_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 19
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting rh-nodejs12-nodejs-nodemon (Red Hat package) rh-nodejs12-nodejs-nodemon (Red Hat package) is affected by 19 known vulnerabilities: 2 high, 17 medium Critical High Medium Low

Vulnerabilities (19)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU76389 - Incorrect Regular Expression
CVE-2020-7754
CWE-185 Medium
No
No
2.0.3-1.el7 19.05.2023 SB2023051950
SB2022072231
SB2021020440
and 5 more
#VU66955 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-7788
CWE-94 Medium
No
No
2.0.3-1.el7, 2.0.3-5.el7 05.09.2022 SB2020121120
SB2022090501
SB2022091209
and 21 more
#VU63698 - Incorrect Regular Expression
CVE-2021-33502
CWE-185 Medium
No
No
2.0.3-2.el7 26.05.2022 SB2021052416
SB2022052615
SB2022060618
and 17 more
#VU61255 - Incorrect Regular Expression
CVE-2021-23362
CWE-185 Medium
No
No
2.0.3-2.el7 11.03.2022 SB2021032315
SB2022031104
SB2022060315
and 28 more
#VU61254 - Use After Free
CVE-2021-22940
CWE-416 Medium
No
No
2.0.3-5.el7 11.03.2022 SB2021081615
SB2022031104
SB2022060618
and 23 more
#VU61253 - Improper Certificate Validation
CVE-2021-22939
CWE-295 Medium
No
No
2.0.3-5.el7 11.03.2022 SB2021081614
SB2022031104
SB2022060618
and 25 more
#VU58206 - Absolute Path Traversal
CVE-2021-32803
CWE-36 Medium
No
No
2.0.3-5.el7 17.11.2021 SB2021080329
SB2022031104
SB2022060618
and 26 more
#VU58205 - Absolute Path Traversal
CVE-2021-32804
CWE-36 Medium
No
No
2.0.3-5.el7 17.11.2021 SB2021080328
SB2022031104
SB2022060618
and 27 more
#VU57498 - Improper input validation
CVE-2021-22931
CWE-20 High
No
No
2.0.3-5.el7 19.10.2021 SB2021101945
SB2022020113
SB2022031104
and 28 more
#VU56967 - Improper input validation
CVE-2021-3672
CWE-20 Medium
No
No
2.0.3-5.el7 30.09.2021 SB2021093017
SB2021110508
SB2022031104
and 39 more
#VU55560 - Use After Free
CVE-2021-22930
CWE-416 High
No
No
2.0.3-5.el7 03.08.2021 SB2021080320
SB2021080324
SB2021080325
and 35 more
#VU55315 - Incorrect Regular Expression
CVE-2021-23343
CWE-185 Medium
No
No
2.0.3-5.el7 26.07.2021 SB2021072624
SB2021072625
SB2022060618
and 24 more
#VU55163 - Improper input validation
CVE-2019-10746
CWE-20 Medium
No
No
2.0.3-1.el7 21.07.2021 SB2021072133
SB2021021141
SB2021021628
and 2 more
#VU54624 - Out-of-bounds read
CVE-2021-22918
CWE-125 Medium
No
No
2.0.3-2.el7 08.07.2021 SB2021070819
SB2021072009
SB2021081123
and 40 more
#VU52985 - Incorrect Regular Expression
CVE-2020-28469
CWE-185 Medium
No
No
2.0.3-5.el7 10.05.2021 SB2021051002
SB2021051004
SB2021072625
and 26 more
#VU52194 - Incorrect Regular Expression
CVE-2021-27290
CWE-185 Medium
No
No
2.0.3-2.el7 12.03.2021 SB2021041364
SB2021070819
SB2021101939
and 32 more
#VU49254 - Use After Free
CVE-2020-8265
CWE-416 Medium
No
No
2.0.3-1.el7 04.01.2021 SB2021010419
SB2021010704
SB2021010705
and 33 more
#VU49253 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-8287
CWE-444 Medium
Available
No
2.0.3-1.el7 04.01.2021 SB2021010419
SB2021010706
SB2021010707
and 33 more
#VU20426 - Resource exhaustion
CVE-2019-10747
CWE-400 Medium
No
No
2.0.3-1.el7 28.08.2019 SB2019082316
SB2022082512
SB2020110621
and 5 more