/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-rq84-f652-pj3m

Published

Last updated

https://images.chainguard.dev/security/CGA-rq84-f652-pj3m
Package

nodejs-16

RepositoryWolfi
Latest Update
Fix not planned
Aliases
  • CVE-2024-21892
  • GHSA-f27j-4f6g-jp27

Severity

7.8

High

CVSS CVSS_V3

References

  • https://nvd.nist.gov/vuln/detail/CVE-2024-21892

Updates

Status

Fix not planned

Impact

Nodejs-16 is no longer receiving support, latest version release of 16.x branch was in August of 2023: https://nodejs.org/download/release/v16.20.2/ and LTS ended in September of 2023: https://endoflife.date/nodejs To remediate this CVE upgrade node to 22.x version stream (latest) in order to receive longest support that also incorporates these fixes.

Status

Under investigation


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing