Node.js is facing two security vulnerabilities, including a potentially major denial-of-service issue, with patches for the problems not available for a week. Releases of Node.js ranging from 0.12 to version 5 are vulnerable to one or both issues. A bulletin issued today by the Node.
Link: Node.js discloses two critical security vulnerabilities