Vulnerability Bulletins

IBM Security Bulletin:Current Release of IBM SDK Node.js is affected by (CVE-2014-7191)

   
Affected software IBM
 
Node.js qs denial-of-service vulnerability. CVE(s): CVE-2014-7191 Affected product(s) and affected version(s): This vulnerability affects IBM SDK for Node.js v1.1.0.7 and open-source version v0.10.31 version of the Node.js runtime. The issue has been resolved in IBM SDK for Node.js v1.1.0.8 and open-source version v0.10.32. To check which version of the Node.js runtime your Bluemix application is using, navigate to the "Files and Logs" for your application through the Bluemix

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_current_release_of_ibm_sdk_node_js_is_affected_by_cve_2014_7191?lang=en_us