OpenJS Foundation Express 4.18.2 for Node.js

CPE Details

OpenJS Foundation Express 4.18.2 for Node.js
4.18.2
2024-09-23
11h11 +00:00
2024-09-23
11h11 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:openjsf:express:4.18.2:*:*:*:*:node.js:*:*

Informations

Vendor

openjsf

Product

express

Version

4.18.2

Target Software

node.js

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-43796 2024-09-10 14h36 +00:00 Express.js minimalist web framework for node. In express < 4.20.0, passing untrusted user input - even after sanitizing it - to response.redirect() may execute untrusted code. This issue is patched in express 4.20.0.
5
Medium