Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2022-32212
Description:A OS Command Injection vulnerability exists in Node.js versions <14.20.0, <16.20.0, <18.5.0 due to an insufficient IsAllowedHost check that can easily be bypassed because IsIPAddress does not properly check if an IP address is invalid before making DBS requests allowing rebinding attacks.
Test IDs: 1.3.6.1.4.1.25623.1.0.893137  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2022-32212
https://hackerone.com/reports/1632921
https://hackerone.com/reports/1632921




© 1998-2025 E-Soft Inc. All rights reserved.