Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Connect
(Sencha)| Repositories | https://github.com/senchalabs/connect |
| #Vulnerabilities | 4 |
| Date | Id | Summary | Products | Score | Patch | Annotated |
|---|---|---|---|---|---|---|
| 2018-06-07 | CVE-2018-3717 | connect node module before 2.14.0 suffers from a Cross-Site Scripting (XSS) vulnerability due to a lack of validation of file in directory.js middleware. | Connect | 5.4 | ||
| 2019-12-27 | CVE-2013-4691 | Sencha Labs Connect has XSS with connect.methodOverride() | Connect | N/A | ||
| 2019-12-11 | CVE-2013-7371 | node-connects before 2.8.2 has cross site scripting in Sencha Labs Connect middleware (vulnerability due to incomplete fix for CVE-2013-7370) | Debian_linux, Connect | N/A | ||
| 2019-12-11 | CVE-2013-7370 | node-connect before 2.8.1 has XSS in the Sencha Labs Connect middleware | Debian_linux, Opensuse, Openshift, Connect | N/A |