PT-2025-4819 · Node.Js · Node.Js

Published

2025-01-22

·

Updated

2025-02-17

·

CVE-2025-23089

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Node.js versions prior to the latest supported version
Description The issue concerns the use of End-of-Life (EOL) versions of Node.js, which are no longer supported and do not receive updates, including security patches. This may expose systems to potential security risks due to unaddressed software vulnerabilities or dependencies. Users are advised to upgrade to actively supported versions of Node.js to ensure continued security updates and support.
Recommendations Upgrade to actively supported versions of Node.js as soon as possible to mitigate the risks associated with using End-of-Life versions. Consider upgrading from version 21.7.3 to a supported version to avoid security risks. As a general mitigation measure, ensure that all Node.js versions in use are actively supported and receive regular security updates.

Fix

Weakness Enumeration

Related Identifiers

BIT-NODE-2025-23089
BIT-NODE-MIN-2025-23089
CVE-2025-23089

Affected Products

Node.Js