Easyjs maintains a narrowly scoped build-tooling product, easywebpack-cli, where the observed vulnerability signal centers on path-traversal flaws that can arise in file-system operations during webpack configuration and bundling. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Easyjs over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-24855MEDIUM Directory Traversal vulnerability in easywebpack-cli before 4.5.2 allows attackers to obtain sensitive information via crafted GET request. | Dec 15, 2022 | 5.3 | 21 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Easyjs.
Media articles that mention a CVE ID that affects a product developed by Easyjs — matched by CVE ID, not by vendor name.