Known Vulnerabilities for products from Nestjs
Listed below are 4 of the newest known vulnerabilities associated with the vendor "Nestjs".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-40879 json | Nest is a framework for building scalable Node.js server-side applications. Prior to 11.1.19, when an attacker sends many sma... | Not Provided | 2026-04-21 | 2026-04-24 |
| CVE-2026-35515 json | Nest is a framework for building scalable Node.js server-side applications. Prior to 11.1.18, SseStream._transform() interpol... | Not Provided | 2026-04-07 | 2026-04-17 |
| CVE-2026-2293 json | A NestJS application using @nestjs/platform-fastify can allow bypass of authentication/authorization middleware when Fastify ... | Not Provided | 2026-02-27 | 2026-04-14 |
| CVE-2023-26108 json | Versions of the package @nestjs/core before 9.0.5 are vulnerable to Information Exposure via the StreamableFile pipe. Exploit... | 5.3 - MEDIUM | 2023-03-06 | 2023-11-07 |