SUSE-SU-2024:1836-1

Advisory lineage Upstream: 2 Downstream: 0
Published: 29 May 2024, 12:10
Last modified:04 Feb 2026, 04:03

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

29 May 2024, 12:10
Published
Vulnerability first disclosed
04 Feb 2026, 04:03
Last Modified
Vulnerability information updated

Description

Security update for nodejs16 This update for nodejs16 fixes the following issues: - CVE-2024-30260: undici: proxy-authorization header not cleared on cross-origin redirect for dispatch, request, stream, pipeline (bsc#1222530) - CVE-2024-30261: undici: Ensure that integrity cannot be tampered with (bsc#1222603)

Affected Systems

  • susenodejs16&distro=SUSE Linux Enterprise Module for Web and Scripting 12

    < 16.20.2-8.45.1

References (5)