Vulnerabilities > Typelevel
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-12-22 | CVE-2023-50730 | Allocation of Resources Without Limits or Throttling vulnerability in Typelevel Grackle Grackle is a GraphQL server written in functional Scala, built on the Typelevel stack. | 7.5 |
2023-01-04 | CVE-2023-22465 | Improper Input Validation vulnerability in Typelevel Http4S Http4s is a Scala interface for HTTP services. | 5.3 |
2022-08-01 | CVE-2022-31183 | Improper Certificate Validation vulnerability in Typelevel FS2 fs2 is a compositional, streaming I/O library for Scala. | 9.8 |
2022-01-05 | CVE-2022-21653 | Inadequate Encryption Strength vulnerability in Typelevel Jawn Jawn is an open source JSON parser. | 7.5 |
2021-09-21 | CVE-2021-41084 | Injection vulnerability in Typelevel Http4S http4s is an open source scala interface for HTTP. | 4.7 |
2021-09-01 | CVE-2021-39185 | Origin Validation Error vulnerability in Typelevel Http4S Http4s is a minimal, idiomatic Scala interface for HTTP services. | 9.1 |
2021-05-27 | CVE-2021-32643 | Path Traversal vulnerability in Typelevel Http4S Http4s is a Scala interface for HTTP services. | 5.8 |
2021-02-02 | CVE-2021-21294 | Allocation of Resources Without Limits or Throttling vulnerability in Typelevel Http4S Http4s (http4s-blaze-server) is a minimal, idiomatic Scala interface for HTTP services. | 7.5 |
2021-02-02 | CVE-2021-21293 | Allocation of Resources Without Limits or Throttling vulnerability in Typelevel Blaze blaze is a Scala library for building asynchronous pipelines, with a focus on network IO. | 7.5 |
2020-03-25 | CVE-2020-5280 | Path Traversal vulnerability in Typelevel Http4S http4s before versions 0.18.26, 0.20.20, and 0.21.2 has a local file inclusion vulnerability. | 7.5 |