GHSA-c5r6-cm8r-wgh9
GitHub Security Advisory
⚠ Unreviewed
CRITICAL
Has CVE
Advisory Details
The implementation of realpath in libuv < 10.22.1, < 12.18.4, and < 14.9.0 used within Node.js incorrectly determined the buffer size which can result in a buffer overflow if the resolved path is longer than 256 bytes.
Related CVEs
Key Information
9.0
/10
Dataset
Last updated: August 1, 2025 6:44 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.