PT-2025-4819 · Node.Js · Node.Js
Published
2025-01-22
·
Updated
2025-02-17
·
CVE-2025-23089
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Node.js versions prior to the latest supported version
Description
The issue concerns the use of End-of-Life (EOL) versions of Node.js, which are no longer supported and do not receive updates, including security patches. This may expose systems to potential security risks due to unaddressed software vulnerabilities or dependencies. Users are advised to upgrade to actively supported versions of Node.js to ensure continued security updates and support.
Recommendations
Upgrade to actively supported versions of Node.js as soon as possible to mitigate the risks associated with using End-of-Life versions.
Consider upgrading from version 21.7.3 to a supported version to avoid security risks.
As a general mitigation measure, ensure that all Node.js versions in use are actively supported and receive regular security updates.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Node.Js