Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
Debian/node-webpack — 4 CVEs · VulnScope
pkg:Debian/
node-webpack
4 total CVEs
CRITICAL
1
MEDIUM
1
LOW
2
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
9.8
CVE-2023-28154
Cross-realm object access in Webpack 5
from 0, < 4.43.0-6+deb11u1
MEDIUM
6.4
CVE-2024-43788
Webpack's AutoPublicPathRuntimeModule has a DOM Clobbering Gadget that leads to XSS
from 0
LOW
3.7
CVE-2025-68458
webpack buildHttp: allowedUris allow-list bypass via URL userinfo (@) leading to build-time SSRF behavior
from 0
LOW
3.7
webpack buildHttp HttpUriPlugin allowedUris bypass via HTTP redirects → SSRF + cache persistence
from 0
CVE-2025-68157