CVE-2025-59436 - Node-IP SSRF Vulnerability
CVE ID : CVE-2025-59436
Published : Sept. 16, 2025, midnight | 5 hours, 56 minutes ago
Description : The ip (aka node-ip) package through 2.0.1 (in NPM) might allow SSRF because the IP address value 017700000001 is improperly categorized as globally routable via isPublic. NOTE: this issue exists because of an incomplete fix for CVE-2024-29415.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Sept. 16, 2025, midnight | 5 hours, 56 minutes ago
Description : The ip (aka node-ip) package through 2.0.1 (in NPM) might allow SSRF because the IP address value 017700000001 is improperly categorized as globally routable via isPublic. NOTE: this issue exists because of an incomplete fix for CVE-2024-29415.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...