Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Connect
(Sencha)Repositories | https://github.com/senchalabs/connect |
#Vulnerabilities | 4 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2018-06-07 | CVE-2018-3717 | connect node module before 2.14.0 suffers from a Cross-Site Scripting (XSS) vulnerability due to a lack of validation of file in directory.js middleware. | Connect | 5.4 | ||
2019-12-27 | CVE-2013-4691 | Sencha Labs Connect has XSS with connect.methodOverride() | Connect | N/A | ||
2019-12-11 | CVE-2013-7371 | node-connects before 2.8.2 has cross site scripting in Sencha Labs Connect middleware (vulnerability due to incomplete fix for CVE-2013-7370) | Debian_linux, Connect | N/A | ||
2019-12-11 | CVE-2013-7370 | node-connect before 2.8.1 has XSS in the Sencha Labs Connect middleware | Debian_linux, Opensuse, Openshift, Connect | N/A |