Known vulnerabilities in rh-nodejs12-nodejs (Red Hat package) - page 2

Software CPE: cpe:2.3:o:red_hat:rh-nodejs12-nodejs_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 43
Public exploits: 2
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting rh-nodejs12-nodejs (Red Hat package) rh-nodejs12-nodejs (Red Hat package) is affected by 43 known vulnerabilities: 8 high, 34 medium, 1 low Critical High Medium Low

Vulnerabilities (43)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU76389 - Incorrect Regular Expression
CVE-2020-7754
CWE-185 Medium
No
No
12.20.1-1.el7 19.05.2023 SB2023051950
SB2022072231
SB2021020440
and 5 more
#VU63698 - Incorrect Regular Expression
CVE-2021-33502
CWE-185 Medium
No
No
12.22.2-1.el7 26.05.2022 SB2021052416
SB2022052615
SB2022060618
and 17 more
#VU61255 - Incorrect Regular Expression
CVE-2021-23362
CWE-185 Medium
No
No
12.22.2-1.el7 11.03.2022 SB2021032315
SB2022031104
SB2022060315
and 28 more
#VU55498 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-15366
CWE-94 Medium
No
No
12.19.1-2.el7 02.08.2021 SB2020071552
SB2021080213
SB2020120120
and 14 more
#VU55163 - Improper input validation
CVE-2019-10746
CWE-20 Medium
No
No
12.20.1-1.el7 21.07.2021 SB2021072133
SB2021021141
SB2021021628
and 2 more
#VU54624 - Out-of-bounds read
CVE-2021-22918
CWE-125 Medium
No
No
12.22.2-1.el7 08.07.2021 SB2021070819
SB2021072009
SB2021081123
and 40 more
#VU52909 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-7774
CWE-94 Medium
No
No
12.19.1-2.el7 06.05.2021 SB2020111735
SB2021050615
SB2021092814
and 24 more
#VU52194 - Incorrect Regular Expression
CVE-2021-27290
CWE-185 Medium
No
No
12.22.2-1.el7 12.03.2021 SB2021041364
SB2021070819
SB2021101939
and 32 more
#VU50955 - Reliance on Reverse DNS Resolution for a Security-Critical Action
CVE-2021-22884
CWE-350 Medium
No
No
12.21.0-1.el7 25.02.2021 SB2021022530
SB2021022532
SB2021022616
and 38 more
#VU50954 - Resource Management Errors
CVE-2021-22883
CWE-399 Medium
No
No
12.21.0-1.el7 25.02.2021 SB2021022530
SB2021022532
SB2021022614
and 36 more
#VU49254 - Use After Free
CVE-2020-8265
CWE-416 Medium
No
No
12.20.1-1.el7 04.01.2021 SB2021010419
SB2021010704
SB2021010705
and 33 more
#VU49253 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-8287
CWE-444 Medium
Available
No
12.20.1-1.el7 04.01.2021 SB2021010419
SB2021010706
SB2021010707
and 33 more
#VU48569 - Resource Management Errors
CVE-2020-8277
CWE-399 Medium
Available
No
12.19.1-2.el7 19.11.2020 SB2020112003
SB2020112005
SB2020102133
and 23 more
#VU47218 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-8201
CWE-444 High
No
No
12.18.4-3.el7 18.09.2020 SB2020091028
SB2020091029
SB2020100608
and 12 more
#VU47248 - Buffer overflow
CVE-2020-8252
CWE-120 High
No
No
12.18.4-3.el7 18.09.2020 SB2020100117
SB2020091824
SB2020091825
and 19 more
#VU47355 - Information Exposure Through Log Files
CVE-2020-15095
CWE-532 Low
No
No
12.18.4-3.el7 07.07.2020 SB2020070743
SB2020100608
SB2020101002
and 12 more
#VU28539 - Memory corruption
CVE-2020-8174
CWE-119 High
No
No
12.18.2-1.el7 03.06.2020 SB2020060305
SB2020060607
SB2020072216
and 20 more
#VU28537 - Improper Authorization
CVE-2020-8172
CWE-285 Medium
No
No
12.18.2-1.el7 03.06.2020 SB2020060305
SB2020060364
SB2020060365
and 9 more
#VU24833 - Resource exhaustion
CVE-2020-8116
CWE-400 Medium
No
No
12.18.4-3.el7 03.02.2020 SB2020020307
SB2020101915
SB2020110420
and 4 more
#VU20426 - Resource exhaustion
CVE-2019-10747
CWE-400 Medium
No
No
12.20.1-1.el7 28.08.2019 SB2019082316
SB2022082512
SB2020110621
and 5 more


Showing elements 21 - 40 out of 43