Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-05-31 CVE-2016-10571 Cryptographic Issues vulnerability in Bkjs-Wand Project Bkjs-Wand
bkjs-wand is imagemagick wand support for node.js and backendjs bkjs-wand versions lower than 0.3.2 download binary resources over HTTP, which leaves it vulnerable to MITM attacks.
network
high complexity
bkjs-wand-project CWE-310
8.1
2018-05-31 CVE-2016-10569 Cryptographic Issues vulnerability in Embedza Project Embedza
embedza is a module to create HTML snippets/embeds from URLs using info from oEmbed, Open Graph, meta tags.
network
high complexity
embedza-project CWE-310
8.1
2018-05-31 CVE-2016-10565 Cryptographic Issues vulnerability in Cnpmjs Operadriver 0.2.1/0.2.2
operadriver is a Opera Driver for Selenium.
network
high complexity
cnpmjs CWE-310
8.1
2018-05-31 CVE-2016-10564 Cryptographic Issues vulnerability in Apk-Parser Project Apk-Parser
apk-parser is a tool to extract Android Manifest info from an APK file.
network
high complexity
apk-parser-project CWE-310
8.1
2018-05-31 CVE-2016-10563 Cryptographic Issues vulnerability in Ipfs Go-Ipfs-Dep
During the installation process, the go-ipfs-deps module before 0.4.4 insecurely downloads resources over HTTP.
network
high complexity
ipfs CWE-310
8.1
2018-05-31 CVE-2016-10562 Cryptographic Issues vulnerability in Iedriver Project Iedriver
iedriver is an NPM wrapper for Selenium IEDriver.
network
high complexity
iedriver-project CWE-310
8.1
2018-05-31 CVE-2016-10560 Cryptographic Issues vulnerability in Galenframework Galenframework-Cli
galenframework-cli is the node wrapper for the Galen Framework.
network
high complexity
galenframework CWE-310
8.1
2018-05-31 CVE-2016-10557 Cryptographic Issues vulnerability in Appium Appium-Chromedriver
appium-chromedriver is a Node.js wrapper around Chromedriver.
network
high complexity
appium CWE-310
8.1
2018-05-31 CVE-2016-10552 7PK - Security Features vulnerability in Infragistics Igniteui
igniteui 0.0.5 and earlier downloads JavaScript and CSS resources over insecure protocol.
network
high complexity
infragistics CWE-254
7.4
2018-05-31 CVE-2016-10542 Improper Input Validation vulnerability in WS Project WS
ws is a "simple to use, blazing fast and thoroughly tested websocket client, server and console for node.js, up-to-date against RFC-6455".
network
low complexity
ws-project CWE-20
7.5