2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-16144myserver.alexcthomas18 is a file server. myserver.alexcthomas18 is vulnerable to a directory traversal issue, giving an ...
CVE-2017-16143commentapp.stetsonwood is an http server. commentapp.stetsonwood is vulnerable to a directory traversal issue, giving an...
CVE-2017-16142infraserver is a RESTful server. infraserver is vulnerable to a directory traversal issue, giving an attacker access to ...
CVE-2017-16141lab6drewfusbyu is an http server. lab6drewfusbyu is vulnerable to a directory traversal issue, giving an attacker access...
CVE-2017-16140lab6.brit95 is a file server. lab6.brit95 is vulnerable to a directory traversal issue, giving an attacker access to the...
CVE-2017-16139jikes is a file server. jikes is vulnerable to a directory traversal issue, giving an attacker access to the filesystem ...
CVE-2017-16138The mime module < 1.4.1, 2.0.1, 2.0.2 is vulnerable to regular expression denial of service when a mime lookup is perfor...
CVE-2017-16137The debug module is vulnerable to regular expression denial of service when untrusted user input is passed into the o fo...
CVE-2017-16136method-override is a module used by the Express.js framework to let you use HTTP verbs such as PUT or DELETE in places w...
CVE-2017-16135serverzyy is a static file server. serverzyy is vulnerable to a directory traversal issue, giving an attacker access to ...
CVE-2017-16134http_static_simple is an http server. http_static_simple is vulnerable to a directory traversal issue, giving an attacke...
CVE-2017-16133goserv is an http server. goserv is vulnerable to a directory traversal issue, giving an attacker access to the filesyst...
CVE-2017-16132simple-npm-registry is a local npm package cache. simple-npm-registry is vulnerable to a directory traversal issue, givi...
CVE-2017-16131unicorn-list is a web framework. unicorn-list is vulnerable to a directory traversal issue, giving an attacker access to...
CVE-2017-16130exxxxxxxxxxx is an Http eX Frame Google Style JavaScript Guide. exxxxxxxxxxx is vulnerable to a directory traversal issu...
CVE-2017-16129The HTTP client module superagent is vulnerable to ZIP bomb attacks. In a ZIP bomb attack, the HTTP server replies with ...
CVE-2017-16128The module npm-script-demo opened a connection to a command and control server. It has been removed from the npm registr...
CVE-2017-16127The module pandora-doomsday infects other modules. It's since been unpublished from the registry.
CVE-2017-16126The module botbait is a tool to be used to track bot and automated tools usage with-in the npm ecosystem. botbait is kno...
CVE-2017-16125rtcmulticonnection-client is a signaling implementation for RTCMultiConnection.js, a multi-session manager. rtcmulticonn...
CVE-2017-16124node-server-forfront is a simple static file server. node-server-forfront is vulnerable to a directory traversal issue, ...
CVE-2017-16123welcomyzt is a simple file server. welcomyzt is vulnerable to a directory traversal issue, giving an attacker access to ...
CVE-2017-16122cuciuci is a simple fileserver. cuciuci is vulnerable to a directory traversal issue, giving an attacker access to the f...
CVE-2017-16121datachannel-client is a signaling implementation for DataChannel.js. datachannel-client is vulnerable to a directory tra...
CVE-2017-16120liyujing is a static file server. liyujing is vulnerable to a directory traversal issue, giving an attacker access to th...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now