CVE-2025-27210 Information

Description

An incomplete fix has been identified for CVE-2025-23084 in Node.js specifically affecting Windows device names like CON PRN and AUX.

This vulnerability affects Windows users of path.join API.

Reference

https://nodejs.org/en/blog/vulnerability/july-2025-security-releases

CNNVD-202507-2264 (Published: 2025-07-16)

Share on: