Known Vulnerabilities for Node-static by Node-static Project
Listed below are 1 of the newest known vulnerabilities associated with "Node-static" by "Node-static Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57075 json | YAML::Syck versions before 1.47 for Perl allow an out-of-bounds read via a signed-char lookup-table index in syck_base64dec. ... | Not Provided | 2026-07-16 | 2026-07-17 |
| CVE-2026-46319 json | In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: Only release RCU read lock after ct_f... | Not Provided | 2026-06-09 | 2026-06-14 |
| CVE-2026-44451 json | Lumiverse is a full-featured AI chat application. Prior to 0.9.7, the component override system transpiles user-supplied TSX ... | Not Provided | 2026-05-26 | 2026-05-27 |
| CVE-2026-44301 json | Hugo is a static site generator. From 0.43 to before 0.161.0, when building a Hugo site that uses Node-based asset pipelines ... | Not Provided | 2026-05-12 | 2026-05-13 |
| CVE-2026-41322 json | @astrojs/node allows Astro to deploy your SSR site to Node targets. Prior to 10.0.5, requesting a static js/css resources fro... | Not Provided | 2026-04-24 | 2026-04-25 |
| CVE-2026-13434 json | A flaw was found in KubeVirt's network annotation generator. When a tenant creates a VirtualMachineInstance with a Multus net... | Not Provided | 2026-06-26 | 2026-06-27 |
| CVE-2026-1615 json | Versions of the package jsonpath before 1.3.0 are vulnerable to Arbitrary Code Injection via unsafe evaluation of user-suppli... | Not Provided | 2026-02-09 | 2026-07-15 |
| CVE-2025-38198 json | In the Linux kernel, the following vulnerability has been resolved: fbcon: Make sure modelist not set on unregistered consol... | Not Provided | 2025-07-04 | 2026-05-12 |
| CVE-2023-26111 json | All versions of the package @nubosoftware/node-static; all versions of the package node-static are vulnerable to Directory Tr... | 7.5 - HIGH | 2023-03-06 | 2023-11-07 |