{"id":"CVE-2023-26109","aliases":[],"url":"https://o3.security/vulnerability/CVE-2023-26109","summary":"All versions of the package node-bluetooth-serial-port are vulnerable to Buffer Overflow via the findSerialPortChannel method due to improper user input length validation.\r\r","details":"All versions of the package node-bluetooth-serial-port are vulnerable to Buffer Overflow via the findSerialPortChannel method due to improper user input length validation.\r\r","published":"2023-03-09T05:15:56.490","modified":"2026-06-17T05:42:41.790","cvss":{"score":7.3,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L"},"epss":null,"cisaKev":null,"exploitsKnown":1,"affectedPackages":[],"fix":null,"references":[{"type":"EXPLOIT","url":"https://security.snyk.io/vuln/SNYK-JS-NODEBLUETOOTHSERIALPORT-3311820"},{"type":"EXPLOIT","url":"https://security.snyk.io/vuln/SNYK-JS-NODEBLUETOOTHSERIALPORT-3311820"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-06-17T05:42:41.790"}}