« List of all CVEs

CVE-2020-8174

Published: 7/24/2020 Last updated: 8/4/2024 Reserved: 1/28/2020

napi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0.

CNA assigner: hackerone (36234546-b8fa-4601-9d6f-f4e334aa8ea1) Requested by: n/a

Opam packages affected (1)

conf-npm

Products affected (1)

Product Vendor Version
https://github.com/nodejs/node n/a n/a

References (14)