Vulnerabilities

Summary — last 7 days

New vulnerabilities2,678▼ 660 vs. last week
Critical / high1,266▼ 293 vs. last week
New active exploitation (KEV)3▼ 5 vs. last week
Unscored (no CVSS)250▼ 252 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedHigh (8.1)1.7%—Httpsync Project Httpsync6/1/20186/17/2026
httpsync is a port of libcurl to node.js. httpsync downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested binary with an attacker controlled binary if the attacker is on the network or positioned in between…
Orbitaley — Vulnerabilities