Trending

#NodeSecurity

Latest posts tagged with #NodeSecurity on Bluesky

Latest Top
Trending

Posts tagged #NodeSecurity

Preview
CVE-2026-25896: CWE-185: Incorrect Regular Expression in NaturalIntelligence fas The vulnerability CVE-2026-25896 affects the fast-xml-parser library, a popular JavaScript tool used for validating XML, parsing XML into JavaScript objects, and building XML from JavaScript objects without relying on C/C++ libraries or cal

fast-xml-parser (<5.3.5) CRITICAL flaw: attackers can override XML entities, causing XSS. Upgrade to 5.3.5+ now if your apps parse XML! radar.offseq.com/threat/cve-2026-25896-cw... #OffSeq #XSS #NodeSecurity

0 0 0 0
Post image

‼️ A critical issue has landed for anyone building with Elysia.js. CVE-2025-66456 allows attackers to achieve remote code execution through a prototype-pollution pathway in certain schema-validation flows. buff.ly/RCQHiLI
#ElysiaJS #CVE202566456 #RCE #AppSec #NodeSecurity #TypeScript 🧵1/5

1 1 1 0

🧮 expr-eval — a popular math evaluator — was marketed as a safer alternative to raw eval. A validation bug lets attackers slip functions or crafted prototypes into variables and break out of the sandbox, leading to #RCE. CVE-2025-12735
#NodeSecurity #SupplyChainSecurity #OpenSourceSecurity

🧵2/4

0 0 1 0
Preview
Malicious npm Package nodejs-smtp Mimics Nodemailer, Targets Atomic and Exodus Wallets Malicious npm package nodejs-smtp, downloaded 347 times since April 2025, hijacks Atomic and Exodus wallets.

Malicious npm package targets Node.js apps via SMTP abuse—developers must audit dependencies and monitor for covert exfiltration. 📦📤 #SupplyChainRisk #NodeSecurity

buff.ly/bR2i1Jr

0 0 0 0