Vulnerabilities
Summary — last 7 days
New vulnerabilities2,662▼ 678 vs. last week
Critical / high1,268▼ 288 vs. last week
New active exploitation (KEV)3▼ 5 vs. last week
Unscored (no CVSS)230▼ 272 vs. last week
1 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | Medium (6.1) | 0.51% | — | Hyperdown Project Hyperdown | 10/26/2022 | 6/17/2026 | The package joyqi/hyper-down from 0.0.0 are vulnerable to Cross-site Scripting (XSS) because the module of parse markdown does not filter the href attribute very well. |