Openjs Foundation · Node.Js · CVE-2026-48617
**Name of the Vulnerable Software and Affected Versions**
Node.js version 22
Node.js version 24
Node.js version 26
**Description**
A flaw in the Permission Model enforcement allows a bypass through path misvalidation in the `process.report.writeReport()` function. This issue can result in a confidentiality impact or the bypass of intended security boundaries under affected configurations.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.