PT-2022-23214 · Apache · Apache Skywalking Nodejs Agent

Zhenxu Ke

·

Published

2022-07-18

·

Updated

2025-12-10

·

CVE-2022-36127

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Apache SkyWalking NodeJS Agent versions prior to 0.5.1
Description The issue causes NodeJS services with the Apache SkyWalking NodeJS Agent installed to become unavailable when the OAP is unhealthy and the NodeJS agent cannot establish a connection.
Recommendations For versions prior to 0.5.1, update to version 0.5.1 or later to resolve the issue.

Fix

Related Identifiers

CVE-2022-36127
GHSA-8GPG-466C-5CPJ

Affected Products

Apache Skywalking Nodejs Agent