Curveballjs develops the a12n-server, an authentication and authorization platform where disclosed vulnerabilities center on improper privilege management and incorrect authorization logic. The recurring weakness classes reflect the core function of access-control enforcement in authentication systems, where flaws can undermine the security guarantees the product is designed to provide. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Curveballjs over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-29452MEDIUM a12n-server is an npm package which aims to provide a simple authentication system. A new HAL-Form was added to allow editing users in version 0.18.0. This feature should only have | Apr 16, 2021 | 6.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Curveballjs.
Media articles that mention a CVE ID that affects a product developed by Curveballjs — matched by CVE ID, not by vendor name.