The OpenJS Foundation has released important updates to Node.js 24.x, 22.x, and 20.x release lines, addressing two...
Node.js
Two high-impact security advisories have been released for the pbkdf2 npm package—an essential utility in the JavaScript...
A critical vulnerability in AWS Amplify’s UI generation tool, @aws-amplify/codegen-ui, is putting developers—and their build pipelines—at serious...
A study titled “Eradicating the Unseen” reveals the widespread presence of a critical path traversal vulnerability (CWE-22)...
With over 26.3 million monthly downloads, Multer is a go-to middleware for handling multipart/form-data in Node.js—especially for...
Node.js Alerts: High-Severity Flaw (CVE-2025-23166) Risks Remote System Crashes! Update Immediately!
Node.js Alerts: High-Severity Flaw (CVE-2025-23166) Risks Remote System Crashes! Update Immediately!
In an important security announcement released recently, the Node.js team has rolled out vital updates for its...
A new supply chain attack has been uncovered by Socket’s Threat Research Team, targeting developers who create...
Microsoft Defender Experts (DEX) has observed a rise in malicious campaigns that use Node.js to deliver malware...
Two critical vulnerabilities have been identified in the xml-crypto library, a popular Node.js library for XML digital...
In a significant shift in its vulnerability management approach, the Node.js team has decided to extend Common...
The Node.js project has released updates to address several security vulnerabilities, including a high-severity flaw that could...
In a significant move to bolster security and encourage users to stay up-to-date, the Node.js Project has...
A severe command injection vulnerability (CVE-2024-56334) has been identified in the widely used Node.js system information package,...
CYFIRMA recently identified “Wish Stealer,” a new Node.js-based malware that targets Windows users by stealing sensitive information...
The Node.js Project has released a security update to address multiple vulnerabilities, including a high-severity flaw that...
MySQL2, a popular MySQL client library for Node.js with over 2 million monthly downloads, has been found...
A significant security vulnerability has been uncovered in the widely-used node-ip npm package, which is designed to...
The Node.js project has released a critical security update addressing vulnerabilities in active release lines (v18.x, v20.x,...
Node.js, the popular JavaScript runtime environment used by millions of developers worldwide, has recently issued security updates...
Node.js is a popular JavaScript runtime environment that is used to build scalable and performant web applications...
Node.js is a popular JavaScript runtime environment that is used to build a wide variety of applications,...