Vulnerabilities > Droppy Project

DATE CVE VULNERABILITY TITLE RISK
2020-11-02 CVE-2020-7757 Path Traversal vulnerability in Droppy Project Droppy
This affects all versions of package droppy.
network
low complexity
droppy-project CWE-22
4.0
2018-05-31 CVE-2016-10529 Cross-Site Request Forgery (CSRF) vulnerability in Droppy Project Droppy
Droppy versions <3.5.0 does not perform any verification for cross-domain websocket requests.
6.8