/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-wgm4-585f-3q25

Published

Last updated

https://images.chainguard.dev/security/CGA-wgm4-585f-3q25
Package

nodejs-18

RepositoryWolfi
Latest Update
Fix not planned
Aliases
  • CVE-2025-23166
  • GHSA-rrjv-57mm-j6cm

Severity

Unknown

References

  • https://nvd.nist.gov/vuln/detail/CVE-2025-23166

Updates

Status

Fix not planned

Impact

nodejs-18 is end-of-life and no backport is planned by upstream to fix this CVE. We recommend upgrading to a nodejs version >=20 where the fix is present for this CVE.

Status

Under investigation


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing