[CLSA-2025:1766614361] Fix CVE(s): CVE-2023-45143
Type:
security
Severity:
Low
Release date:
2025-12-24 22:12:45 UTC
Description:
* SECURITY UPDATE: Node.js undici cross-origin redirect vulnerability - debian/patches/CVE-2023-45143.patch: clear Cookie and Host headers on cross-origin redirects to prevent sensitive data leakage - CVE-2023-45143
Updated packages:
  • alt-nodejs16-docs_16.20.2-9_amd64.deb
    sha:a34e43fd131b35d64d51c86ed208391a578e355b
  • alt-nodejs16-nodejs_16.20.2-9_amd64.deb
    sha:a03569bf34e3e21307d07e94742eea845acd627b
  • alt-nodejs16-nodejs-devel_16.20.2-9_amd64.deb
    sha:b2231b8c03392221ca3ad71476f78c833b68a95a
  • alt-nodejs16-npm_8.19.4-16.20.2.9_amd64.deb
    sha:429ee8af857bd7af4b5a6b1d74dd85555a111800
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.