Deno · Deno · CVE-2023-33966
**Name of the Vulnerable Software and Affected Versions**
Deno versions 1.34.0
deno runtime versions 0.114.0
**Description**
The issue affects outbound HTTP requests made using the built-in `node:http` or `node:https` modules, which are incorrectly not checked against the network permission allow list (`--allow-net`). Dependencies relying on these built-in modules are also subject to the issue.
**Recommendations**
For Deno version 1.34.0, update to Deno v1.34.1.
For deno runtime version 0.114.0, update to deno runtime 0.114.1.