CVE-2023-32002
CVE Information
CVE ID
CVE-2023-32002
Severity
CRITICAL
CVSS 9.8
Publish Date
2023-08-21
Description
The use of `Module._load()` can bypass the policy mechanism and require modules outside of the policy.json definition for a given module. This vulnerability affects all users using the experimental policy mechanism in all active release lines: 16.x, 18.x and, 20.x. Please note that at the time this CVE was issued, the policy is an experimental feature of Node.js.
Collection Date
2026-01-13
Impact Summary
Affected Hosts
1
Related Incidents
0
Related Alerts
0
Affected Hosts (1)
| Hostname | OS Type | Severity | Total CVEs |
|---|---|---|---|
| DESKTOP-FNUMV3U | WINDOWS | CRITICAL | 195 |