Known vulnerabilities in rh-nodejs8-nodejs (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:rh-nodejs8-nodejs_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 7
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting rh-nodejs8-nodejs (Red Hat package) rh-nodejs8-nodejs (Red Hat package) is affected by 7 known vulnerabilities: 2 medium, 5 low Critical High Medium Low

Vulnerabilities (7)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU71631 - Improper Link Resolution Before File Access ('Link Following')
CVE-2018-20834
CWE-59 Medium
No
No
8.16.0-1.el7 30.01.2023 SB2019043013
SB2023013027
SB2019072241
#VU26284 - Resource exhaustion
CVE-2019-5737
CWE-400 Medium
No
No
8.16.0-1.el7 20.03.2020 SB2019032825
SB2020032103
SB2019041610
and 6 more
#VU16171 - Improper input validation
CVE-2018-12116
CWE-20 Low
No
No
8.16.0-1.el7 29.11.2018 SB2018112906
SB2019012702
SB2019012803
and 4 more
#VU16170 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2018-12123
CWE-451 Low
No
No
8.16.0-1.el7 29.11.2018 SB2018112906
SB2019012702
SB2019012803
and 5 more
#VU16169 - Resource exhaustion
CVE-2018-12122
CWE-400 Low
No
No
8.16.0-1.el7 29.11.2018 SB2018112906
SB2019012702
SB2019012803
and 5 more
#VU16168 - Heap-based Buffer Overflow
CVE-2018-12121
CWE-122 Low
No
No
8.16.0-1.el7 29.11.2018 SB2018112906
SB2019012702
SB2019012803
and 8 more
#VU14498 - Out-of-bounds write
CVE-2018-12115
CWE-787 Low
No
No
8.11.4-1.el7 22.08.2018 SB2018082209
SB2018082313
SB2018082315
and 7 more