Synopsis
Issued | 2025-07-23 |
Severity | High |
Updated Packages | kusanagi-nodejs22 |
Affected Products | KUSANAGI 9, Business Edition, Page Speed Technology, Security Edition |
Description
An update for kusanagi-nodejs22 is now available.
Security fix(es):
- (CVE-2025-27210) Windows Device Names (CON, PRN, AUX) Bypass Path Traversal Protection in path.normalize()
- (CVE-2025-27210) lib: handle all windows reserved driver name (RafaelGSS)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE information may not yet be available on those websites.