CVE-2023-26110: Node-Bluetooth Project Node-Bluetooth
Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.
All versions of the package node-bluetooth are vulnerable to Buffer Overflow via the findSerialPortChannel method due to improper user input length validation.
Affected products
- Node-Bluetooth Project Node-Bluetooth: up to and including 1.2.6
Published 2023-03-09. Last modified 2026-06-17.