HOL LogoHOL

Product

  • Guard overview
  • Features
  • Product preview
  • Comparison
  • Pricing
  • Enterprise
  • Open App
  • Install Guard

AI tools

  • All AI tools
  • Codex
  • Claude Code
  • Cursor
  • Gemini CLI
  • OpenCode
  • Hermes
  • OpenClaw
  • GitHub Copilot CLI
  • Antigravity
  • Kimi
  • Grok
  • Pi / Oh My Pi
  • Zcode

Extensions

  • All extensions
  • Command coverage
  • MCP server coverage
  • Core safety
  • Data and resilience
  • Cloud and infrastructure

Resources

  • AI security hub
  • AI tool security
  • Safe labs
  • Redacted warnings
  • Advisories
  • Active CVEs
  • Security guides
  • Docs
  • Research
  • Affiliates

AI Agents

  • Home
  • Browse Agents
  • Registry Dashboard
  • Register Agent
  • Docs

Plugins

  • Browse Plugins
  • Plugin Launches
  • Submit Plugin

Extensions

  • All extensions
  • Command coverage
  • MCP server coverage
  • Core safety
  • Data and resilience
  • Cloud and infrastructure

Best Plugins

  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins

Security

  • HOL Guard
  • CIGAR

Open Source

  • Open Source Impact

Points

  • HOL Points
  • Leaderboard
  • Analytics

Events

  • Patchwork (Ended)
  • OpenConvAI Hackathon (Ended)
  • Hedera x AI Demo Day (Ended)
  • Hackathons (Ended)

Standards

  • Overview
  • Standards Library
  • Universal Identity
  • Auditable Points
  • Agent Adapter Registry
  • Files & Hashinals
  • Data Registries
  • Identity Metadata
  • Agent Communication
  • AppNet Accounts

Tools

  • Hashnet MCP Server
  • Standards SDK
  • Conversational Agent

Library Docs

  • Guard Docs
  • Registry Broker Docs
  • Go SDK
  • Python SDK

Resources

  • Tutorials
  • Overview
  • Careers
  • Members
  • Blog
  1. Home
  2. Blog
  3. Nodejs

Nodejs

5 posts tagged with “Nodejs”

CVE-2026-87776: Express compression leaks native memory until the process dies
cvecompressionexpress

CVE-2026-87776: Express compression leaks native memory until the process dies

How to fix CVE-2026-87776: upgrade compression to 1.8.2

Sep 11, 2026
Read
CVE-2026-75021: fastify-cli debug-host bind can expose Inspector RCE
cvefastify-clinodejs

CVE-2026-75021: fastify-cli debug-host bind can expose Inspector RCE

How to fix CVE-2026-75021: upgrade fastify-cli to 8.0.1

Sep 8, 2026
Read
CVE-2026-85024: undici WebSocket deflate bug can crash the Node process
cveundicinodejs

CVE-2026-85024: undici WebSocket deflate bug can crash the Node process

How to fix CVE-2026-85024: upgrade undici to 8.10.2 (or 7.29.1 / 6.28.1 on older trains)

Sep 4, 2026
Read
BREAKING: CVE-2026-76169 lets malformed URLs skip Fastify not-found auth
cvefastifyauth-bypass

BREAKING: CVE-2026-76169 lets malformed URLs skip Fastify not-found auth

How to fix CVE-2026-76169: upgrade fastify to 5.12.2

Sep 4, 2026
Read
BREAKING: CVE-2026-85184 lets absolute-form requests skip Fastify middie auth
cvefastifymiddie

BREAKING: CVE-2026-85184 lets absolute-form requests skip Fastify middie auth

How to fix CVE-2026-85184: upgrade @fastify/middie to 9.3.4

Sep 4, 2026
Read
Docs
  • Documentation Index
  • Developer Hub
  • API Reference
  • Root OpenAPI
  • Registry OpenAPI
  • Run in Postman
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Plugin Launches
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • About HOL
  • Contact
  • Blog
  • GitHub
  • Privacy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.