AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-23919

HIGH · CVSS 7.5 EPSS 2.21%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-02-23 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2023-23919
Severity
HIGH
CVSS
7.5
EPSS
2.21%
OpenSSL

Original NVD Description

A cryptographic vulnerability exists in Node.js <19.2.0, <18.14.1, <16.19.1, <14.21.3 that in some cases did does not clear the OpenSSL error stack after operations that may set it. This may lead to false positive errors during subsequent cryptographic operations that happen to be on the same thread. This in turn could be used to cause a denial of service.