CVE-2023-23920
CVSS v3.1
4.2 (Medium)
EPSS
0.04 % (15th)
Affected Products
2
Advisories
30
An untrusted search path vulnerability exists in Node.js. <19.6.1, <18.14.1, <16.19.1, and <14.21.3 that could allow an attacker to search and potentially load ICU data when running with elevated privileges.
Weaknesses
- CWE-426
- Untrusted Search Path
- CVE Status
- PUBLISHED
- CNA
- HackerOne
- Published Date
-
2023-02-23 20:15:14
(19 months ago) - Updated Date
-
2023-05-03 04:15:09
(16 months ago)
Affected Products
Loading...
Loading...
Loading...
Configuration #1
|
Configuration #2
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...