Site icon API Security Blog

Linux Distros Unpatched Vulnerability : CVE-2021-22939

image
The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available. If the Node.js https API was used incorrectly and undefined was in passed for the rejectUnauthorized parameter, no error was returned and connections to servers with an expired certificate would have been accepted. (CVE-2021-22939) Note that Nessus relies on the presence of the package as reported by the vendor. File data…Read More

Exit mobile version