CVE-2025-32379

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
09/04/2025
Last modified:
14/01/2026

Description

Koa is expressive middleware for Node.js using ES2017 async functions. In koa

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:koajs:koa:*:*:*:*:*:node.js:*:* 2.16.1 (excluding)
cpe:2.3:a:koajs:koa:3.0.0:alpha0:*:*:*:node.js:*:*
cpe:2.3:a:koajs:koa:3.0.0:alpha1:*:*:*:node.js:*:*
cpe:2.3:a:koajs:koa:3.0.0:alpha2:*:*:*:node.js:*:*
cpe:2.3:a:koajs:koa:3.0.0:alpha3:*:*:*:node.js:*:*
cpe:2.3:a:koajs:koa:3.0.0:alpha4:*:*:*:node.js:*:*