Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-06-07 CVE-2017-16089 Path Traversal vulnerability in Serverlyr Project Serverlyr
serverlyr is a simple http server.
network
low complexity
serverlyr-project CWE-22
7.5
2018-06-07 CVE-2017-16086 Resource Exhaustion vulnerability in Ua-Parser Project Ua-Parser
ua-parser is a port of Browserscope's user agent parser.
network
low complexity
ua-parser-project CWE-400
7.5
2018-06-07 CVE-2017-16085 Path Traversal vulnerability in Tinyserver2 Project Tinyserver2 0.5.0/0.5.1/0.5.2
tinyserver2 is a webserver for static files.
network
low complexity
tinyserver2-project CWE-22
7.5
2018-06-07 CVE-2017-16084 Path Traversal vulnerability in List-N-Stream Project List-N-Stream
list-n-stream is a server for static files to list and stream local videos.
network
low complexity
list-n-stream-project CWE-22
7.5
2018-06-07 CVE-2017-16083 Path Traversal vulnerability in Node-Simple-Router
node-simple-router is a minimalistic router for Node.
network
low complexity
node-simple-router CWE-22
7.5
2018-06-07 CVE-2017-16081 Information Exposure vulnerability in Cross-Env.Js Project Cross-Env.Js
cross-env.js was a malicious module published with the intent to hijack environment variables.
network
low complexity
cross-env-js-project CWE-200
7.5
2018-06-07 CVE-2017-16080 Information Exposure vulnerability in Nodesass Project Nodesass
nodesass was a malicious module published with the intent to hijack environment variables.
network
low complexity
nodesass-project CWE-200
7.5
2018-06-07 CVE-2017-16079 Information Exposure vulnerability in SMB Project SMB
smb was a malicious module published with the intent to hijack environment variables.
network
low complexity
smb-project CWE-200
7.5
2018-06-07 CVE-2017-16078 Information Exposure vulnerability in Shadowsock Project Shadowsock
shadowsock was a malicious module published with the intent to hijack environment variables.
network
low complexity
shadowsock-project CWE-200
7.5
2018-06-07 CVE-2017-16077 Information Exposure vulnerability in Mongose Project Mongose
mongose was a malicious module published with the intent to hijack environment variables.
network
low complexity
mongose-project CWE-200
7.5