nodejs node是nodejs组织的一个事件驱动的脚本语言运行环境。 nodejs node 26.5.0及之前版本、24.18.0及之前版本和22.23.1及之前版本存在输入验证错误漏洞,该漏洞源于HTTP客户端在重建出站标头时可能省略超出maxHeadersCount/maxHeaderPairs的标头,导致请求失同步,可能造成HTTP请求走私。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-58045 | nodejs node 资源管理错误漏洞 | |
| CVE-2026-58041 | Node.js 竞争条件问题漏洞 | |
| CVE-2026-58042 | nodejs node 资源管理错误漏洞 | |
| CVE-2026-56846 | Node.js 资源管理错误漏洞 | |
| CVE-2026-56848 | Node.js 资源管理错误漏洞 |
No comments yet