FIND-20260324-001 · 2026-03-24 · Innovation Veille

Node.js Security Releases — 2 HIGH severity CVEs across all active lines (March 24 2026)

cve HIGH
Node.js project released security patches today (March 24 2026) for all active release lines (20.x, 22.x, 24.x, 25.x) addressing 2 HIGH severity vulnerabilities, 4-5 MEDIUM, and 2 LOW. ODS services use Node.js 22.x (LTS) as the runtime for Next.js (ods-dashboard), and potentially other tooling. Immediate patching is recommended for any Node.js LTS environments.

Source

https://nodejs.org/en/blog/vulnerability/march-2026-security-releases

ODS Impact

ods-dashboard (Next.js on Node.js 22 LTS) and any agent scripts running on Node.js must be patched to 22.x latest security release. Check the runtime version in the Coolify deployment for ods-dashboard.

Security Review

License: N/A | Maintenance: ACTIVE | Risk: LOW | Recommendation: USE_WITH_CAUTION

Tags

nodejs cve security lts high-severity patch-required