Total vulnerabilities in the database
Node.js: All versions prior to Node.js 6.15.0 and 8.14.0: HTTP request splitting: If Node.js can be convinced to use unsanitized user-provided Unicode data for the path
option of an HTTP request, then data can be provided which will trigger a second, unexpected, and user-defined HTTP request to made to the same server.
Software | From | Fixed in |
---|---|---|
nodejs / node.js | 6.0.0 | 6.8.1.x |
nodejs / node.js | 8.0.0 | 8.8.1.x |
nodejs / node.js | 6.9.0 | 6.15.0 |
nodejs / node.js | 8.9.0 | 8.14.0 |
suse / suse_linux_enterprise_server | 12 | 12.x |
suse / suse_enterprise_storage | 4 | 4.x |
suse / suse_openstack_cloud | 7 | 7.x |
suse / suse_openstack_cloud | 8 | 8.x |
suse / suse_linux_enterprise_server | 15 | 15.x |