FIND-20260324-001 · 2026-03-24 · Innovation Veille
Node.js Security Releases — 2 HIGH severity CVEs across all active lines (March 24 2026)
cve
HIGH
Node.js project released security patches today (March 24 2026) for all active release lines (20.x, 22.x, 24.x, 25.x) addressing 2 HIGH severity vulnerabilities, 4-5 MEDIUM, and 2 LOW. ODS services use Node.js 22.x (LTS) as the runtime for Next.js (ods-dashboard), and potentially other tooling. Immediate patching is recommended for any Node.js LTS environments.
Source
https://nodejs.org/en/blog/vulnerability/march-2026-security-releases
ODS Impact
ods-dashboard (Next.js on Node.js 22 LTS) and any agent scripts running on Node.js must be patched to 22.x latest security release. Check the runtime version in the Coolify deployment for ods-dashboard.
Security Review
License: N/A | Maintenance: ACTIVE | Risk: LOW | Recommendation: USE_WITH_CAUTION
Tags
nodejs
cve
security
lts
high-severity
patch-required