Critical Vulnerability in Node.js Library Allows RCE on Windows Systems
First seen 18 Dec 2025, 10:54 UTC
•
•66
Export
Article Content
Browse articles
A critical vulnerability, CVE-2025-68154, has been identified in the systeminformation Node.js library, affecting all versions up to 5.27.13. This flaw enables attackers to execute remote commands on Windows systems, prompting developers to update to version 5.27.14 immediately to mitigate risks.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Google Addresses Eighth Chrome Zero-Day Vulnerability in 2025
China-linked Cyber Group Expands Targeting to Southeastern Europe
China-Nexus APT UAT-7290 Targets South Asia Telecoms in Cyber Espionage Campaign
China-linked UAT-7290 Targets Telcos in Cyberespionage Campaign
UAT-7290 Cyber Espionage Targets South Asian Telecoms
APT28 Exploits MSHTML Zero-Day Vulnerability in Windows