16,510 vulnerabilities published in 2018
charset 1.0.0 and below are vulnerable to regular expression denial of service. Input of around 50k characters is requir
The no-case module is vulnerable to regular expression denial of service. When malicious untrusted user input is passed
serverwg is a simple http server. serverwg is vulnerable to a directory traversal issue, giving an attacker access to th
serverhuwenhui is a simple http server. serverhuwenhui is vulnerable to a directory traversal issue, giving an attacker
serveryztyzt is a simple http server. serveryztyzt is vulnerable to a directory traversal issue, giving an attacker acce
citypredict.whauwiller is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by plac
serverwzl is a simple http server. serverwzl is vulnerable to a directory traversal issue, giving an attacker access to
tmock is a static file server. tmock is vulnerable to a directory traversal issue, giving an attacker access to the file
pooledwebsocket is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "..
gaoxiaotingtingting is an HTTP server. gaoxiaotingtingting is vulnerable to a directory traversal issue, giving an attac
weather.swlyons is a simple web server for weather updates. weather.swlyons is vulnerable to a directory traversal issue
The content module is a module to parse HTTP Content-* headers. It is used by the hapijs framework to provide this funct
The parsejson module is vulnerable to regular expression denial of service when untrusted user input is passed into it t
The marked module is vulnerable to a regular expression denial of service. Based on the information published in the pub
The timespan module is vulnerable to regular expression denial of service. Given 50k characters of untrusted user input
The string module is a module that provides extra string operations. The string module is vulnerable to regular expressi
slug is a module to slugify strings, even if they contain unicode. slug is vulnerable to regular expression denial of se
The forwarded module is used by the Express.js framework to handle the X-Forwarded-For header. It is vulnerable to a reg
Fresh is a module used by the Express.js framework for HTTP response freshness testing. It is vulnerable to a regular ex
liyujing is a static file server. liyujing is vulnerable to a directory traversal issue, giving an attacker access to th
datachannel-client is a signaling implementation for DataChannel.js. datachannel-client is vulnerable to a directory tra
cuciuci is a simple fileserver. cuciuci is vulnerable to a directory traversal issue, giving an attacker access to the f
welcomyzt is a simple file server. welcomyzt is vulnerable to a directory traversal issue, giving an attacker access to
node-server-forfront is a simple static file server. node-server-forfront is vulnerable to a directory traversal issue,
rtcmulticonnection-client is a signaling implementation for RTCMultiConnection.js, a multi-session manager. rtcmulticonn
exxxxxxxxxxx is an Http eX Frame Google Style JavaScript Guide. exxxxxxxxxxx is vulnerable to a directory traversal issu
unicorn-list is a web framework. unicorn-list is vulnerable to a directory traversal issue, giving an attacker access to
simple-npm-registry is a local npm package cache. simple-npm-registry is vulnerable to a directory traversal issue, givi
goserv is an http server. goserv is vulnerable to a directory traversal issue, giving an attacker access to the filesyst
http_static_simple is an http server. http_static_simple is vulnerable to a directory traversal issue, giving an attacke
serverzyy is a static file server. serverzyy is vulnerable to a directory traversal issue, giving an attacker access to
method-override is a module used by the Express.js framework to let you use HTTP verbs such as PUT or DELETE in places w
The mime module < 1.4.1, 2.0.1, 2.0.2 is vulnerable to regular expression denial of service when a mime lookup is perfor
jikes is a file server. jikes is vulnerable to a directory traversal issue, giving an attacker access to the filesystem
lab6.brit95 is a file server. lab6.brit95 is vulnerable to a directory traversal issue, giving an attacker access to the
lab6drewfusbyu is an http server. lab6drewfusbyu is vulnerable to a directory traversal issue, giving an attacker access
infraserver is a RESTful server. infraserver is vulnerable to a directory traversal issue, giving an attacker access to
commentapp.stetsonwood is an http server. commentapp.stetsonwood is vulnerable to a directory traversal issue, giving an
myserver.alexcthomas18 is a file server. myserver.alexcthomas18 is vulnerable to a directory traversal issue, giving an
sspa is a server dedicated to single-page apps. sspa is vulnerable to a directory traversal issue, giving an attacker ac
mockserve is a file server. mockserve is vulnerable to a directory traversal issue, giving an attacker access to the fil
shit-server is a file server. shit-server is vulnerable to a directory traversal issue, giving an attacker access to the
serve46 is a static file server. serve46 is vulnerable to a directory traversal issue, giving an attacker access to the
zwserver is a weather web server. zwserver is vulnerable to a directory traversal issue, giving an attacker access to th
wanggoujing123 is a simple webserver. wanggoujing123 is vulnerable to a directory traversal issue, giving an attacker ac
static-html-server is a static file server. static-html-server is vulnerable to a directory traversal issue, giving an a
earlybird is a web server module for early development. earlybird is vulnerable to a directory traversal issue, giving a
fast-http-cli is the command line interface for fast-http, a simple web server. fast-http-cli is vulnerable to a directo
myprolyz is a static file server. myprolyz is vulnerable to a directory traversal issue, giving an attacker access to th
censorify.tanisjr is a simple web server and API RESTful service. censorify.tanisjr is vulnerable to a directory travers
Scan for 2018 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started