| @tootallnate/once |
CVE-2026-3449 |
LOW |
1.1.2 |
3.0.1 |
https://access.redhat.com/security/cve/CVE-2026-3449
https://github.com/TooTallNate/once
https://github.com/TooTallNate/once/commit/b9f43cc5259bee2952d91ad3cdbd201a82df448a
https://github.com/TooTallNate/once/issues/8
https://nvd.nist.gov/vuln/detail/CVE-2026-3449
https://security.snyk.io/vuln/SNYK-JS-TOOTALLNATEONCE-15250612
https://www.cve.org/CVERecord?id=CVE-2026-3449
|
| ansi-regex |
CVE-2021-3807 |
HIGH |
3.0.0 |
6.0.1, 5.0.1, 4.1.1, 3.0.1 |
https://access.redhat.com/errata/RHSA-2022:6595
https://access.redhat.com/security/cve/CVE-2021-3807
https://app.snyk.io/vuln/SNYK-JS-ANSIREGEX-1583908
https://bugzilla.redhat.com/1907444
https://bugzilla.redhat.com/1945459
https://bugzilla.redhat.com/1964461
https://bugzilla.redhat.com/2007557
https://bugzilla.redhat.com/2098556
https://bugzilla.redhat.com/2102001
https://bugzilla.redhat.com/2105422
https://bugzilla.redhat.com/2105426
https://bugzilla.redhat.com/2105428
https://bugzilla.redhat.com/2105430
https://bugzilla.redhat.com/show_bug.cgi?id=1907444
https://bugzilla.redhat.com/show_bug.cgi?id=1945459
https://bugzilla.redhat.com/show_bug.cgi?id=1964461
https://bugzilla.redhat.com/show_bug.cgi?id=2007557
https://bugzilla.redhat.com/show_bug.cgi?id=2098556
https://bugzilla.redhat.com/show_bug.cgi?id=2102001
https://bugzilla.redhat.com/show_bug.cgi?id=2105422
https://bugzilla.redhat.com/show_bug.cgi?id=2105426
https://bugzilla.redhat.com/show_bug.cgi?id=2105428
https://bugzilla.redhat.com/show_bug.cgi?id=2105430
https://bugzilla.redhat.com/show_bug.cgi?id=2121019
https://bugzilla.redhat.com/show_bug.cgi?id=2124299
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28469
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-7788
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-33502
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3807
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-29244
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32212
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32213
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32214
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32215
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-33987
https://errata.almalinux.org/9/ALSA-2022-6595.html
https://errata.rockylinux.org/RLSA-2022:6595
https://github.com/chalk/ansi-regex
https://github.com/chalk/ansi-regex/commit/419250fa510bf31b4cc672e76537a64f9332e1f1
https://github.com/chalk/ansi-regex/commit/75a657da7af875b2e2724fd6331bf0a4b23d3c9a
https://github.com/chalk/ansi-regex/commit/8d1d7cdb586269882c4bdc1b7325d0c58c8f76f9
https://github.com/chalk/ansi-regex/commit/c3c0b3f2736b9c01feec0fef33980c43720dcde8
https://github.com/chalk/ansi-regex/issues/38#issuecomment-924086311
https://github.com/chalk/ansi-regex/issues/38#issuecomment-925924774
https://github.com/chalk/ansi-regex/releases/tag/v6.0.1
https://huntr.dev/bounties/5b3cf33b-ede0-4398-9974-800876dfd994
https://linux.oracle.com/cve/CVE-2021-3807.html
https://linux.oracle.com/errata/ELSA-2022-6595.html
https://nvd.nist.gov/vuln/detail/CVE-2021-3807
https://security.netapp.com/advisory/ntap-20221014-0002
https://security.netapp.com/advisory/ntap-20221014-0002/
https://www.cve.org/CVERecord?id=CVE-2021-3807
https://www.oracle.com/security-alerts/cpuapr2022.html
|
| ansi-regex |
CVE-2021-3807 |
HIGH |
5.0.0 |
6.0.1, 5.0.1, 4.1.1, 3.0.1 |
https://access.redhat.com/errata/RHSA-2022:6595
https://access.redhat.com/security/cve/CVE-2021-3807
https://app.snyk.io/vuln/SNYK-JS-ANSIREGEX-1583908
https://bugzilla.redhat.com/1907444
https://bugzilla.redhat.com/1945459
https://bugzilla.redhat.com/1964461
https://bugzilla.redhat.com/2007557
https://bugzilla.redhat.com/2098556
https://bugzilla.redhat.com/2102001
https://bugzilla.redhat.com/2105422
https://bugzilla.redhat.com/2105426
https://bugzilla.redhat.com/2105428
https://bugzilla.redhat.com/2105430
https://bugzilla.redhat.com/show_bug.cgi?id=1907444
https://bugzilla.redhat.com/show_bug.cgi?id=1945459
https://bugzilla.redhat.com/show_bug.cgi?id=1964461
https://bugzilla.redhat.com/show_bug.cgi?id=2007557
https://bugzilla.redhat.com/show_bug.cgi?id=2098556
https://bugzilla.redhat.com/show_bug.cgi?id=2102001
https://bugzilla.redhat.com/show_bug.cgi?id=2105422
https://bugzilla.redhat.com/show_bug.cgi?id=2105426
https://bugzilla.redhat.com/show_bug.cgi?id=2105428
https://bugzilla.redhat.com/show_bug.cgi?id=2105430
https://bugzilla.redhat.com/show_bug.cgi?id=2121019
https://bugzilla.redhat.com/show_bug.cgi?id=2124299
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28469
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-7788
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-33502
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3807
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-29244
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32212
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32213
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32214
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32215
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-33987
https://errata.almalinux.org/9/ALSA-2022-6595.html
https://errata.rockylinux.org/RLSA-2022:6595
https://github.com/chalk/ansi-regex
https://github.com/chalk/ansi-regex/commit/419250fa510bf31b4cc672e76537a64f9332e1f1
https://github.com/chalk/ansi-regex/commit/75a657da7af875b2e2724fd6331bf0a4b23d3c9a
https://github.com/chalk/ansi-regex/commit/8d1d7cdb586269882c4bdc1b7325d0c58c8f76f9
https://github.com/chalk/ansi-regex/commit/c3c0b3f2736b9c01feec0fef33980c43720dcde8
https://github.com/chalk/ansi-regex/issues/38#issuecomment-924086311
https://github.com/chalk/ansi-regex/issues/38#issuecomment-925924774
https://github.com/chalk/ansi-regex/releases/tag/v6.0.1
https://huntr.dev/bounties/5b3cf33b-ede0-4398-9974-800876dfd994
https://linux.oracle.com/cve/CVE-2021-3807.html
https://linux.oracle.com/errata/ELSA-2022-6595.html
https://nvd.nist.gov/vuln/detail/CVE-2021-3807
https://security.netapp.com/advisory/ntap-20221014-0002
https://security.netapp.com/advisory/ntap-20221014-0002/
https://www.cve.org/CVERecord?id=CVE-2021-3807
https://www.oracle.com/security-alerts/cpuapr2022.html
|
| brace-expansion |
CVE-2026-33750 |
MEDIUM |
1.1.11 |
5.0.5, 3.0.2, 2.0.3, 1.1.13 |
https://access.redhat.com/security/cve/CVE-2026-33750
https://github.com/juliangruber/brace-expansion
https://github.com/juliangruber/brace-expansion/blob/daa71bcb4a30a2df9bcb7f7b8daaf2ab30e5794a/src/index.ts#L107-L113
https://github.com/juliangruber/brace-expansion/blob/daa71bcb4a30a2df9bcb7f7b8daaf2ab30e5794a/src/index.ts#L184
https://github.com/juliangruber/brace-expansion/commit/311ac0d54994158c0a384e286a7d6cbb17ee8ed5
https://github.com/juliangruber/brace-expansion/commit/7fd684f89fdde3549563d0a6522226a9189472a2
https://github.com/juliangruber/brace-expansion/commit/b9cacd9e55e7a1fa588fe4b7bb1159d52f1d902a
https://github.com/juliangruber/brace-expansion/issues/98
https://github.com/juliangruber/brace-expansion/pull/95
https://github.com/juliangruber/brace-expansion/pull/96
https://github.com/juliangruber/brace-expansion/pull/97
https://github.com/juliangruber/brace-expansion/security/advisories/GHSA-f886-m6hf-6m8v
https://nvd.nist.gov/vuln/detail/CVE-2026-33750
https://www.cve.org/CVERecord?id=CVE-2026-33750
|
| brace-expansion |
CVE-2025-5889 |
LOW |
1.1.11 |
2.0.2, 1.1.12, 3.0.1, 4.0.1 |
https://access.redhat.com/security/cve/CVE-2025-5889
https://gist.github.com/mmmsssttt404/37a40ce7d6e5ca604858fe30814d9466
https://github.com/juliangruber/brace-expansion
https://github.com/juliangruber/brace-expansion/commit/0b6a9781e18e9d2769bb2931f4856d1360243ed2
https://github.com/juliangruber/brace-expansion/commit/15f9b3c75ebf5988198241fecaebdc45eff28a9f
https://github.com/juliangruber/brace-expansion/commit/36603d5f3599a37af9e85eda30acd7d28599c36e
https://github.com/juliangruber/brace-expansion/commit/c3c73c8b088defc70851843be88ccc3af08e7217
https://github.com/juliangruber/brace-expansion/pull/65/commits/a5b98a4f30d7813266b221435e1eaaf25a1b0ac5
https://github.com/juliangruber/brace-expansion/releases/tag/v4.0.1
https://nvd.nist.gov/vuln/detail/CVE-2025-5889
https://vuldb.com/?ctiid.311660
https://vuldb.com/?id.311660
https://vuldb.com/?submit.585717
https://www.cve.org/CVERecord?id=CVE-2025-5889
|
| diff |
CVE-2026-24001 |
LOW |
5.0.0 |
8.0.3, 5.2.2, 4.0.4, 3.5.1 |
https://access.redhat.com/security/cve/CVE-2026-24001
https://github.com/kpdecker/jsdiff
https://github.com/kpdecker/jsdiff/commit/15a1585230748c8ae6f8274c202e0c87309142f5
https://github.com/kpdecker/jsdiff/issues/653
https://github.com/kpdecker/jsdiff/pull/649
https://github.com/kpdecker/jsdiff/security/advisories/GHSA-73rr-hh4g-fpgx
https://nvd.nist.gov/vuln/detail/CVE-2026-24001
https://www.cve.org/CVERecord?id=CVE-2026-24001
|
| http-cache-semantics |
CVE-2022-25881 |
HIGH |
4.1.0 |
4.1.1 |
https://access.redhat.com/errata/RHSA-2023:2655
https://access.redhat.com/security/cve/CVE-2022-25881
https://bugzilla.redhat.com/2165824
https://bugzilla.redhat.com/2168631
https://bugzilla.redhat.com/2171935
https://bugzilla.redhat.com/2172190
https://bugzilla.redhat.com/2172204
https://bugzilla.redhat.com/2172217
https://bugzilla.redhat.com/show_bug.cgi?id=2165824
https://bugzilla.redhat.com/show_bug.cgi?id=2168631
https://bugzilla.redhat.com/show_bug.cgi?id=2171935
https://bugzilla.redhat.com/show_bug.cgi?id=2172190
https://bugzilla.redhat.com/show_bug.cgi?id=2172204
https://bugzilla.redhat.com/show_bug.cgi?id=2172217
https://bugzilla.redhat.com/show_bug.cgi?id=2178076
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-25881
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-4904
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-23918
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-23920
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-23936
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-24807
https://errata.almalinux.org/9/ALSA-2023-2655.html
https://errata.rockylinux.org/RLSA-2023:2655
https://github.com/kornelski/http-cache-semantics
https://github.com/kornelski/http-cache-semantics/blob/master/index.js%23L83
https://github.com/kornelski/http-cache-semantics/commit/560b2d8ef452bbba20ffed69dc155d63ac757b74
https://linux.oracle.com/cve/CVE-2022-25881.html
https://linux.oracle.com/errata/ELSA-2023-2655.html
https://nvd.nist.gov/vuln/detail/CVE-2022-25881
https://security.netapp.com/advisory/ntap-20230622-0008
https://security.netapp.com/advisory/ntap-20230622-0008/
https://security.snyk.io/vuln/SNYK-JAVA-ORGWEBJARSNPM-3253332
https://security.snyk.io/vuln/SNYK-JS-HTTPCACHESEMANTICS-3248783
https://www.cve.org/CVERecord?id=CVE-2022-25881
|
| ip |
CVE-2024-29415 |
HIGH |
1.1.5 |
no fix available |
https://access.redhat.com/security/cve/CVE-2024-29415
https://cosmosofcyberspace.github.io/npm_ip_cve/npm_ip_cve.html
https://github.com/indutny/node-ip
https://github.com/indutny/node-ip/issues/150
https://github.com/indutny/node-ip/pull/143
https://github.com/indutny/node-ip/pull/144
https://nvd.nist.gov/vuln/detail/CVE-2024-29415
https://security.netapp.com/advisory/ntap-20250117-0010
https://security.netapp.com/advisory/ntap-20250117-0010/
https://www.cve.org/CVERecord?id=CVE-2024-29415
|
| ip |
CVE-2023-42282 |
LOW |
1.1.5 |
2.0.1, 1.1.9 |
https://access.redhat.com/security/cve/CVE-2023-42282
https://cosmosofcyberspace.github.io/npm_ip_cve/npm_ip_cve.html
https://github.com/JoshGlazebrook/socks/issues/93#issue-2128357447
https://github.com/github/advisory-database/pull/3504#issuecomment-1937179999
https://github.com/indutny/node-ip
https://github.com/indutny/node-ip/commit/32f468f1245574785ec080705737a579be1223aa
https://github.com/indutny/node-ip/commit/6a3ada9b471b09d5f0f5be264911ab564bf67894
https://github.com/indutny/node-ip/pull/138
https://huntr.com/bounties/bfc3b23f-ddc0-4ee7-afab-223b07115ed3/
https://nvd.nist.gov/vuln/detail/CVE-2023-42282
https://security.netapp.com/advisory/ntap-20240315-0008/
https://ubuntu.com/security/notices/USN-6643-1
https://www.bleepingcomputer.com/news/security/dev-rejects-cve-severity-makes-his-github-repo-read-only/
https://www.cve.org/CVERecord?id=CVE-2023-42282
|
| minimatch |
CVE-2022-3517 |
HIGH |
3.0.4 |
3.0.5 |
https://access.redhat.com/errata/RHSA-2023:0321
https://access.redhat.com/security/cve/CVE-2022-3517
https://bugzilla.redhat.com/2066009
https://bugzilla.redhat.com/2130518
https://bugzilla.redhat.com/2134609
https://bugzilla.redhat.com/2140911
https://bugzilla.redhat.com/show_bug.cgi?id=2066009
https://bugzilla.redhat.com/show_bug.cgi?id=2130518
https://bugzilla.redhat.com/show_bug.cgi?id=2134609
https://bugzilla.redhat.com/show_bug.cgi?id=2140911
https://bugzilla.redhat.com/show_bug.cgi?id=2142808
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-44906
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3517
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-35256
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-43548
https://errata.almalinux.org/9/ALSA-2023-0321.html
https://errata.rockylinux.org/RLSA-2023:0321
https://github.com/grafana/grafana-image-renderer/issues/329
https://github.com/isaacs/minimatch
https://github.com/isaacs/minimatch/commit/a8763f4388e51956be62dc6025cec1126beeb5e6
https://github.com/isaacs/minimatch/commit/a8763f4388e51956be62dc6025cec1126beeb5e6 (v3.0.5)
https://github.com/nodejs/node/issues/42510
https://linux.oracle.com/cve/CVE-2022-3517.html
https://linux.oracle.com/errata/ELSA-2023-1743.html
https://lists.debian.org/debian-lts-announce/2023/01/msg00011.html
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MTEUUTNIEBHGKUKKLNUZSV7IEP6IP3Q3/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UM6XJ73Q3NAM5KSGCOKJ2ZIA6GUWUJLK/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MTEUUTNIEBHGKUKKLNUZSV7IEP6IP3Q3
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UM6XJ73Q3NAM5KSGCOKJ2ZIA6GUWUJLK
https://nvd.nist.gov/vuln/detail/CVE-2022-3517
https://ubuntu.com/security/notices/USN-6086-1
https://www.cve.org/CVERecord?id=CVE-2022-3517
|
| minimatch |
CVE-2026-26996 |
HIGH |
3.0.4 |
10.2.1, 9.0.6, 8.0.5, 7.4.7, 6.2.1, 5.1.7, 4.2.4, 3.1.3 |
https://access.redhat.com/security/cve/CVE-2026-26996
https://github.com/isaacs/minimatch
https://github.com/isaacs/minimatch/commit/2e111f3a79abc00fa73110195de2c0f2351904f5
https://github.com/isaacs/minimatch/security/advisories/GHSA-3ppc-4f35-3m26
https://nvd.nist.gov/vuln/detail/CVE-2026-26996
https://www.cve.org/CVERecord?id=CVE-2026-26996
|
| minimatch |
CVE-2026-27903 |
HIGH |
3.0.4 |
10.2.3, 9.0.7, 8.0.6, 7.4.8, 6.2.2, 5.1.8, 4.2.5, 3.1.3 |
https://access.redhat.com/security/cve/CVE-2026-27903
https://github.com/isaacs/minimatch
https://github.com/isaacs/minimatch/commit/0bf499aa45f5059b56809cc3b75ff3eafeb8d748
https://github.com/isaacs/minimatch/security/advisories/GHSA-7r86-cg39-jmmj
https://nvd.nist.gov/vuln/detail/CVE-2026-27903
https://www.cve.org/CVERecord?id=CVE-2026-27903
|
| minimatch |
CVE-2026-27904 |
HIGH |
3.0.4 |
10.2.3, 9.0.7, 8.0.6, 7.4.8, 6.2.2, 5.1.8, 4.2.5, 3.1.4 |
https://access.redhat.com/security/cve/CVE-2026-27904
https://github.com/isaacs/minimatch
https://github.com/isaacs/minimatch/commit/11d0df6165d15a955462316b26d52e5efae06fce
https://github.com/isaacs/minimatch/security/advisories/GHSA-23c5-xmqv-rm74
https://nvd.nist.gov/vuln/detail/CVE-2026-27904
https://www.cve.org/CVERecord?id=CVE-2026-27904
|
| npm |
CVE-2022-29244 |
HIGH |
8.1.0 |
8.11.0 |
https://access.redhat.com/errata/RHSA-2022:6595
https://access.redhat.com/security/cve/CVE-2022-29244
https://bugzilla.redhat.com/1907444
https://bugzilla.redhat.com/1945459
https://bugzilla.redhat.com/1964461
https://bugzilla.redhat.com/2007557
https://bugzilla.redhat.com/2098556
https://bugzilla.redhat.com/2102001
https://bugzilla.redhat.com/2105422
https://bugzilla.redhat.com/2105426
https://bugzilla.redhat.com/2105428
https://bugzilla.redhat.com/2105430
https://bugzilla.redhat.com/show_bug.cgi?id=1907444
https://bugzilla.redhat.com/show_bug.cgi?id=1945459
https://bugzilla.redhat.com/show_bug.cgi?id=1964461
https://bugzilla.redhat.com/show_bug.cgi?id=2007557
https://bugzilla.redhat.com/show_bug.cgi?id=2098556
https://bugzilla.redhat.com/show_bug.cgi?id=2102001
https://bugzilla.redhat.com/show_bug.cgi?id=2105422
https://bugzilla.redhat.com/show_bug.cgi?id=2105426
https://bugzilla.redhat.com/show_bug.cgi?id=2105428
https://bugzilla.redhat.com/show_bug.cgi?id=2105430
https://bugzilla.redhat.com/show_bug.cgi?id=2121019
https://bugzilla.redhat.com/show_bug.cgi?id=2124299
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28469
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-7788
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-33502
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3807
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-29244
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32212
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32213
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32214
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32215
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-33987
https://errata.almalinux.org/9/ALSA-2022-6595.html
https://errata.rockylinux.org/RLSA-2022:6595
https://github.com/nodejs/node/pull/43210
https://github.com/nodejs/node/releases/tag/v16.15.1
https://github.com/nodejs/node/releases/tag/v17.9.1
https://github.com/nodejs/node/releases/tag/v18.3.0
https://github.com/npm/cli
https://github.com/npm/cli/releases/tag/v8.11.0
https://github.com/npm/cli/security/advisories/GHSA-hj9c-8jmm-8c52
https://github.com/npm/cli/tree/latest/workspaces/libnpmpack
https://github.com/npm/cli/tree/latest/workspaces/libnpmpublish
https://github.com/npm/npm-packlist
https://linux.oracle.com/cve/CVE-2022-29244.html
https://linux.oracle.com/errata/ELSA-2022-6595.html
https://nvd.nist.gov/vuln/detail/CVE-2022-29244
https://security.netapp.com/advisory/ntap-20220722-0007
https://security.netapp.com/advisory/ntap-20220722-0007/
https://www.cve.org/CVERecord?id=CVE-2022-29244
|
| semver |
CVE-2022-25883 |
HIGH |
7.3.5 |
7.5.2, 6.3.1, 5.7.2 |
https://access.redhat.com/errata/RHSA-2023:5363
https://access.redhat.com/security/cve/CVE-2022-25883
https://bugzilla.redhat.com/2216475
https://bugzilla.redhat.com/2230948
https://bugzilla.redhat.com/2230955
https://bugzilla.redhat.com/2230956
https://bugzilla.redhat.com/show_bug.cgi?id=2216475
https://bugzilla.redhat.com/show_bug.cgi?id=2230948
https://bugzilla.redhat.com/show_bug.cgi?id=2230955
https://bugzilla.redhat.com/show_bug.cgi?id=2230956
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-25883
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-32002
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-32006
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-32559
https://errata.almalinux.org/9/ALSA-2023-5363.html
https://errata.rockylinux.org/RLSA-2023:5363
https://github.com/advisories/GHSA-c2qf-rxjj-qqgw
https://github.com/npm/node-semver
https://github.com/npm/node-semver/blob/main/classes/range.js#L97-L104
https://github.com/npm/node-semver/blob/main/classes/range.js%23L97-L104
https://github.com/npm/node-semver/blob/main/internal/re.js#L138
https://github.com/npm/node-semver/blob/main/internal/re.js#L160
https://github.com/npm/node-semver/blob/main/internal/re.js%23L138
https://github.com/npm/node-semver/blob/main/internal/re.js%23L160
https://github.com/npm/node-semver/commit/2f8fd41487acf380194579ecb6f8b1bbfe116be0
https://github.com/npm/node-semver/commit/717534ee353682f3bcf33e60a8af4292626d4441
https://github.com/npm/node-semver/commit/928e56d21150da0413a3333a3148b20e741a920c
https://github.com/npm/node-semver/pull/564
https://github.com/npm/node-semver/pull/585
https://github.com/npm/node-semver/pull/593
https://linux.oracle.com/cve/CVE-2022-25883.html
https://linux.oracle.com/errata/ELSA-2023-5363.html
https://nvd.nist.gov/vuln/detail/CVE-2022-25883
https://security.netapp.com/advisory/ntap-20241025-0004
https://security.netapp.com/advisory/ntap-20241025-0004/
https://security.snyk.io/vuln/SNYK-JS-SEMVER-3247795
https://www.cve.org/CVERecord?id=CVE-2022-25883
|
| tar |
CVE-2026-23745 |
HIGH |
6.1.11 |
7.5.3 |
https://access.redhat.com/security/cve/CVE-2026-23745
https://github.com/isaacs/node-tar
https://github.com/isaacs/node-tar/commit/340eb285b6d986e91969a1170d7fe9b0face405e
https://github.com/isaacs/node-tar/security/advisories/GHSA-8qq5-rm4j-mr97
https://nvd.nist.gov/vuln/detail/CVE-2026-23745
https://www.cve.org/CVERecord?id=CVE-2026-23745
|
| tar |
CVE-2026-23950 |
HIGH |
6.1.11 |
7.5.4 |
https://access.redhat.com/security/cve/CVE-2026-23950
https://github.com/isaacs/node-tar
https://github.com/isaacs/node-tar/commit/3b1abfae650056edfabcbe0a0df5954d390521e6
https://github.com/isaacs/node-tar/security/advisories/GHSA-r6q2-hw4h-h46w
https://nvd.nist.gov/vuln/detail/CVE-2026-23950
https://www.cve.org/CVERecord?id=CVE-2026-23950
|
| tar |
CVE-2026-24842 |
HIGH |
6.1.11 |
7.5.7 |
https://access.redhat.com/security/cve/CVE-2026-24842
https://github.com/isaacs/node-tar
https://github.com/isaacs/node-tar/commit/f4a7aa9bc3d717c987fdf1480ff7a64e87ffdb46
https://github.com/isaacs/node-tar/security/advisories/GHSA-34x7-hfp2-rc4v
https://nvd.nist.gov/vuln/detail/CVE-2026-24842
https://www.cve.org/CVERecord?id=CVE-2026-24842
|
| tar |
CVE-2026-26960 |
HIGH |
6.1.11 |
7.5.8 |
https://access.redhat.com/security/cve/CVE-2026-26960
https://github.com/isaacs/node-tar
https://github.com/isaacs/node-tar/commit/2cb1120bcefe28d7ecc719b41441ade59c52e384
https://github.com/isaacs/node-tar/commit/d18e4e1f846f4ddddc153b0f536a19c050e7499f
https://github.com/isaacs/node-tar/security/advisories/GHSA-83g3-92jg-28cx
https://nvd.nist.gov/vuln/detail/CVE-2026-26960
https://www.cve.org/CVERecord?id=CVE-2026-26960
|
| tar |
CVE-2026-29786 |
HIGH |
6.1.11 |
7.5.10 |
https://access.redhat.com/security/cve/CVE-2026-29786
https://github.com/isaacs/node-tar
https://github.com/isaacs/node-tar/commit/7bc755dd85e623c0279e08eb3784909e6d7e4b9f
https://github.com/isaacs/node-tar/security/advisories/GHSA-qffp-2rhf-9h96
https://nvd.nist.gov/vuln/detail/CVE-2026-29786
https://www.cve.org/CVERecord?id=CVE-2026-29786
|
| tar |
CVE-2026-31802 |
HIGH |
6.1.11 |
7.5.11 |
https://access.redhat.com/security/cve/CVE-2026-31802
https://github.com/isaacs/node-tar
https://github.com/isaacs/node-tar/commit/f48b5fa3b7985ddab96dc0f2125a4ffc9911b6ad
https://github.com/isaacs/node-tar/security/advisories/GHSA-9ppj-qmqm-q256
https://nvd.nist.gov/vuln/detail/CVE-2026-31802
https://www.cve.org/CVERecord?id=CVE-2026-31802
|
| tar |
CVE-2024-28863 |
MEDIUM |
6.1.11 |
6.2.1 |
https://access.redhat.com/errata/RHSA-2024:6147
https://access.redhat.com/security/cve/CVE-2024-28863
https://bugzilla.redhat.com/2293200
https://bugzilla.redhat.com/2296417
https://bugzilla.redhat.com/show_bug.cgi?id=2293200
https://bugzilla.redhat.com/show_bug.cgi?id=2296417
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-22020
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-28863
https://errata.almalinux.org/9/ALSA-2024-6147.html
https://errata.rockylinux.org/RLSA-2024:6147
https://github.com/isaacs/node-tar
https://github.com/isaacs/node-tar/commit/fe8cd57da5686f8695415414bda49206a545f7f7
https://github.com/isaacs/node-tar/commit/fe8cd57da5686f8695415414bda49206a545f7f7 (v6.2.1)
https://github.com/isaacs/node-tar/security/advisories/GHSA-f5x3-32g6-xq36
https://linux.oracle.com/cve/CVE-2024-28863.html
https://linux.oracle.com/errata/ELSA-2024-6148.html
https://nvd.nist.gov/vuln/detail/CVE-2024-28863
https://security.netapp.com/advisory/ntap-20240524-0005
https://security.netapp.com/advisory/ntap-20240524-0005/
https://www.cve.org/CVERecord?id=CVE-2024-28863
|
| No Misconfigurations found |