[CLSA-2026:1777541660] alt-nodejs16-nodejs: Fix of CVE-2025-22150
Type:
security
Severity:
Important
Release date:
2026-05-04 17:40:04 UTC
Description:
- CVE-2025-22150: undici uses predictable Math.random() for multipart/form-data boundary, allowing attackers to tamper with backend requests under certain conditions
Updated packages:
  • alt-nodejs16-nodejs-16.20.2-17.el10.x86_64.rpm
    sha:561b3826ae707858b0a7a491ab551ee442ec5ae5f28c69dd16d1b5d88d24f318
  • alt-nodejs16-nodejs-devel-16.20.2-17.el10.x86_64.rpm
    sha:d88a9e391d675fe5e7a0a341d6b78d842d71e52bb4236da68a02234c3c3944db
  • alt-nodejs16-nodejs-docs-16.20.2-17.el10.noarch.rpm
    sha:5a080b181dc14d76d0fdec9689ff3b1ff8d04f2132517ac713ce10871ecf8e1f
  • alt-nodejs16-npm-8.19.4-16.20.2.17.el10.x86_64.rpm
    sha:1f4b520101e6d0ee473c1578dd9ccda1d5a26f2ed1c9778ee8a5abf792ffa2ae
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.