Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2731▼ 88 respecto a la semana anterior
Críticas / altas1419▲ 189 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)83▼ 429 respecto a la semana anterior
3 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.9) | 1.3% | — | Node-fetch Project Node-fetch | 1/8/2022 | 17/6/2026 | Inefficient Regular Expression Complexity in GitHub repository node-fetch/node-fetch prior to 3.2.10. | |
| Modificada | Media (6.1) | 1.7% | — | Node-fetch Project Node-fetchSiemens Sinec INSDebian Linux | 16/1/2022 | 17/6/2026 | node-fetch is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor | |
| Modificada | Media (5.3) | 1.7% | — | Node-fetch Project Node-fetch | 10/9/2020 | 17/6/2026 | node-fetch before versions 2.6.1 and 3.0.0-beta.9 did not honor the size option after following a redirect, which means that when a content size was over the limit, a FetchError would never get thrown and the process would end without failure. For most people, this fix will have a little or no impact. However, if you… |