The Closurecompiler Project maintains a JavaScript optimization and compilation tool whose vulnerability footprint is narrowly scoped to the compiler itself, reflecting its role as a build-stage utility rather than a runtime component. The observed weakness centers on missing encryption of sensitive data, which is notable in a compiler context where intermediate or output artifacts may contain or expose embedded credentials or cryptographic material. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Closurecompiler Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-10582HIGH closurecompiler is a Closure Compiler for node.js. closurecompiler downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause rem | Jun 1, 2018 | 8.1 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Closurecompiler Project.
Media articles that mention a CVE ID that affects a product developed by Closurecompiler Project — matched by CVE ID, not by vendor name.