CVE-2020-26149: Linuxfoundation Nats.deno

High severity, CVSS 7.5. EPSS: 1.5% chance of exploitation in the next 30 days.

NATS nats.js before 2.0.0-209, nats.ws before 1.0.0-111, and nats.deno before 1.0.0-9 allow credential disclosure from a client to a server.

Affected products

Published 2020-09-30. Last modified 2026-06-17.