apk package
wolfi/node-gyp
pkg:apk/wolfi/node-gyp
Vulnerabilities (21)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2023-42282 | — | < 10.1.0-r0 | 10.1.0-r0 | Feb 8, 2024 | The ip package before 1.1.9 for Node.js might allow SSRF because some IP addresses (such as 0x7f.1) are improperly categorized as globally routable via isPublic. |
- CVE-2023-42282Feb 8, 2024affected < 10.1.0-r0fixed 10.1.0-r0
The ip package before 1.1.9 for Node.js might allow SSRF because some IP addresses (such as 0x7f.1) are improperly categorized as globally routable via isPublic.
Page 2 of 2