PT-2026-73408 · Bitnami · Node-Min

Published

2026-08-17

·

Updated

2026-08-17

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
A flaw in Node.js Permission Model enforcement allows process.report writes (and overwrites) files outside --allow-fs-write paths.
This can lead to confidentiality impact or bypass of the intended security boundary under affected configurations.
This vulnerability affects Node.js 22.x, 24.x, and 26.x.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BIT-NODE-MIN-2026-58039

Affected Products

Node-Min