NestJS — CWE-125

All FrameworksNestJSCWE-125

2 CVEs categorized as CWE-125 in NestJS.

CVE-2024-22004CRITICAL2024
Due to length check, an attacker with privilege access on a Linux Nonsecure operating system can trigger a vulnerability and leak the secure memory from the Trusted Application
CVE-2019-5034MEDIUM2019
An exploitable information disclosure vulnerability exists in the Weave Legacy Pairing functionality of Nest Cam IQ Indoor version 4620002. A set of specially crafted weave packets can cause an out of bounds read, resulting in information disclosure. An attacker can send packets to trigger this vuln…