[SUSE-SU-2021:3184-1] Security update for nodejs14

Severity Important
CVEs 5

Security update for nodejs14

This update for nodejs14 fixes the following issues:

  • CVE-2021-3672: Fixed missing input validation on hostnames (bsc#1188881).
  • CVE-2021-22931: Fixed improper handling of untypical characters in domain names (bsc#1189370).
  • CVE-2021-22940: Use after free on close http2 on stream canceling (bsc#1189368)
  • CVE-2021-22939: Incomplete validation of rejectUnauthorized parameter (bsc#1189369)
  • CVE-2021-22930: Fixed use after free on close http2 on stream canceling (bsc#1188917).
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...