Vulnerabilities > Embedthis > Appweb > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-06-02 CVE-2021-33254 NULL Pointer Dereference vulnerability in Embedthis Appweb 8.2.1
An issue was discovered in src/http/httpLib.c in EmbedThis Appweb Community Edition 8.2.1, allows attackers to cause a denial of service via the stream paramter to the parseUri function.
network
low complexity
embedthis CWE-476
5.0
2018-03-15 CVE-2018-8715 Improper Authentication vulnerability in Embedthis Appweb
The Embedthis HTTP library, and Appweb versions before 7.0.3, have a logic flaw related to the authCondition function in http/httpLib.c.
network
embedthis CWE-287
6.8