Vulnerabilities

Summary — last 7 days

New vulnerabilities2,697▼ 350 vs. last week
Critical / high1,260▼ 214 vs. last week
New active exploitation (KEV)8→ no change vs. last week
Unscored (no CVSS)210▼ 117 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedCritical (9.1)2.0%—Https-proxy-agent Project Https-proxy-agent6/7/20186/17/2026
https-proxy-agent before 2.1.1 passes auth option to the Buffer constructor without proper sanitization, resulting in DoS and uninitialized memory leak in setups where an attacker could submit typed input to the 'auth' parameter (e.g. JSON).