Vulnerabilities > Nodejs > Node JS > 16.0.0

DATE CVE VULNERABILITY TITLE RISK
2021-07-12 CVE-2021-22918 Out-of-bounds Read vulnerability in multiple products
Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII.
network
low complexity
nodejs siemens CWE-125
5.3
2021-07-12 CVE-2021-22921 Incorrect Permission Assignment for Critical Resource vulnerability in multiple products
Node.js before 16.4.1, 14.17.2, and 12.22.2 is vulnerable to local privilege escalation attacks under certain conditions on Windows platforms.
local
low complexity
nodejs siemens CWE-732
7.8