Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2018-3744 | 1 Html-pages Project | 1 Html-pages | 2023-01-30 | 5.0 MEDIUM | 9.8 CRITICAL |
The html-pages node module contains a path traversal vulnerabilities that allows an attacker to read any file from the server with cURL. | |||||
CVE-2018-16481 | 1 Html-pages Project | 1 Html-pages | 2019-10-09 | 4.3 MEDIUM | 6.1 MEDIUM |
A XSS vulnerability was found in html-page <=2.1.1 that allows malicious Javascript code to be executed in the user's browser due to the absence of sanitization of the paths before rendering. |