| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-40178 | @node-saml/node-saml's validatePostRequestAsync does not include checkTimestampsValidityError | node-saml | node-saml | Medium | 5.3 | 2023-08-23 20:15:23 | Deep Dive |
| CVE-2023-32002 | Node.js 安全漏洞 | NodeJS | Node | 超危 | - | 2023-08-21 16:52:42 | Deep Dive |
| CVE-2023-32003 | Node.js 路径遍历漏洞 | NodeJS | Node | 中危 | - | 2023-08-15 15:10:29 | Deep Dive |
| CVE-2023-32004 | Node.js 路径遍历漏洞 | NodeJS | Node | 高危 | - | 2023-08-15 15:10:19 | Deep Dive |
| CVE-2023-32006 | Node.js 安全漏洞 | NodeJS | Node | 高危 | - | 2023-08-15 15:10:09 | Deep Dive |
| CVE-2023-30586 | Node.js 安全漏洞 | NodeJS | Node | 高危 | - | 2023-06-30 23:40:08 | Deep Dive |
| CVE-2023-30589 | nodejs 安全漏洞 | NodeJS | Node | 高危 | - | 2023-06-30 23:39:59 | Deep Dive |
| CVE-2023-30769 | Rab13s Exploit | Dogecoin | Node | Critical | 9.1 | 2023-04-17 00:00:00 | Deep Dive |
| CVE-2022-43441 | node-sqlite3 安全漏洞 | Ghost Foundation | node-sqlite3 | High | 8.1 | 2023-03-16 20:14:14 | Deep Dive |
| CVE-2023-26109 | npm node-bluetooth 安全漏洞 | - | node-bluetooth-serial-port | High | 7.3 | 2023-03-09 05:00:03 | Deep Dive |
| CVE-2023-26110 | npm node-bluetooth 安全漏洞 | - | node-bluetooth | High | 7.3 | 2023-03-09 05:00:02 | Deep Dive |
| CVE-2023-26111 | node-static 路径遍历漏洞 | - | @nubosoftware/node-static | High | 7.5 | 2023-03-06 05:00:03 | Deep Dive |
| CVE-2023-23920 | Node.js 代码问题漏洞 | NodeJS | Node | 中危 | - | 2023-02-23 00:00:00 | Deep Dive |
| CVE-2023-23919 | Node.js 安全漏洞 | NodeJS | Node | 高危 | - | 2023-02-23 00:00:00 | Deep Dive |
| CVE-2023-23918 | Node.js 安全漏洞 | NodeJS | Node | 高危 | - | 2023-02-23 00:00:00 | Deep Dive |
| CVE-2023-25653 | Improper calculations in ECC implementation can trigger a Denial-of-Service (DoS) | cisco | node-jose | High | 7.5 | 2023-02-16 18:15:27 | Deep Dive |
| CVE-2022-34456 | Dell EMC Metro node 代码注入漏洞 | Dell EMC | Metro node | High | 8.8 | 2023-01-18 05:11:42 | Deep Dive |
| CVE-2020-36650 | IonicaBizau node-gry command injection | IonicaBizau | node-gry | Medium | 5.5 | 2023-01-11 17:52:06 | Deep Dive |
| CVE-2022-23539 | jsonwebtoken unrestricted key type could lead to legacy keys usage | auth0 | node-jsonwebtoken | Medium | 5.9 | 2022-12-22 23:20:48 | Deep Dive |
| CVE-2022-23540 | jsonwebtoken vulnerable to signature validation bypass due to insecure default algorithm in jwt.verify() | auth0 | node-jsonwebtoken | Medium | 6.4 | 2022-12-22 18:02:25 | Deep Dive |