VYPR

apk package

chainguard/node-problem-detector-0.8-compat

pkg:apk/chainguard/node-problem-detector-0.8-compat

Vulnerabilities (43)

  • CVE-2023-44487HigKEVOct 10, 2023
    affected < 0.8.14-r6fixed 0.8.14-r6

    The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.

  • CVE-2023-3978Aug 2, 2023
    affected < 0.8.14-r5fixed 0.8.14-r5

    Text nodes not in the HTML namespace are incorrectly literally rendered, causing text which should be escaped to not be. This could lead to an XSS attack.

  • CVE-2019-3826Mar 26, 2019
    affected < 0fixed 0

    A stored, DOM based, cross-site scripting (XSS) flaw was found in Prometheus before version 2.7.1. An attacker could exploit this by convincing an authenticated user to visit a crafted URL on a Prometheus server, allowing for the execution and persistent storage of arbitrary scri

Page 3 of 3