Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-06-07 CVE-2017-16116 Resource Exhaustion vulnerability in String Project String
The string module is a module that provides extra string operations.
network
low complexity
string-project CWE-400
7.5
2018-06-07 CVE-2017-16115 Resource Exhaustion vulnerability in Timespan Project Timespan
The timespan module is vulnerable to regular expression denial of service.
network
low complexity
timespan-project CWE-400
7.5
2018-06-07 CVE-2017-16114 Resource Exhaustion vulnerability in Marked Project Marked
The marked module is vulnerable to a regular expression denial of service.
network
low complexity
marked-project CWE-400
7.5
2018-06-07 CVE-2017-16113 Improper Input Validation vulnerability in Parsejson Project Parsejson 0.0.1/0.0.2/0.0.3
The parsejson module is vulnerable to regular expression denial of service when untrusted user input is passed into it to be parsed.
network
low complexity
parsejson-project CWE-20
7.5
2018-06-07 CVE-2017-16111 Resource Exhaustion vulnerability in Content Project Content
The content module is a module to parse HTTP Content-* headers.
network
low complexity
content-project CWE-400
7.5
2018-06-07 CVE-2017-16110 Path Traversal vulnerability in Weather.Swlyons Project Weather.Swlyons
weather.swlyons is a simple web server for weather updates.
network
low complexity
weather-swlyons-project CWE-22
7.5
2018-06-07 CVE-2017-16108 Path Traversal vulnerability in Gaoxiaotingtingting Project Gaoxiaotingtingting
gaoxiaotingtingting is an HTTP server.
network
low complexity
gaoxiaotingtingting-project CWE-22
7.5
2018-06-07 CVE-2017-16107 Path Traversal vulnerability in Pooledwebsocket Project Pooledwebsocket
pooledwebsocket is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
network
low complexity
pooledwebsocket-project CWE-22
7.5
2018-06-07 CVE-2017-16106 Path Traversal vulnerability in Tmock Project Tmock
tmock is a static file server.
network
low complexity
tmock-project CWE-22
7.5
2018-06-07 CVE-2017-16105 Path Traversal vulnerability in Serverwzl Project Serverwzl
serverwzl is a simple http server.
network
low complexity
serverwzl-project CWE-22
7.5