Crud File Server Project maintains a single, narrowly scoped file-serving application that serves as a lightweight data-access component in targeted infrastructure deployments. Live severity, exploitation, and exposure figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Crud File Server Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-3733HIGH crud-file-server node module before 0.9.0 suffers from a Path Traversal vulnerability due to incorrect validation of url, which allows a malicious user to read content of any file | May 29, 2018 | 7.5 | 24 | NO | NO |
CVE-2018-3726MEDIUM crud-file-server node module before 0.8.0 suffers from a Cross-Site Scripting vulnerability to a lack of validation of file names. | Jun 7, 2018 | 6.1 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Crud File Server Project.
Media articles that mention a CVE ID that affects a product developed by Crud File Server Project — matched by CVE ID, not by vendor name.