Frank Yaul's vulnerability disclosures center on CoreHTTP, a focused HTTP server component with a narrow but specialized deployment footprint. The reported weakness classes remain broadly categorized, limiting structural insight into the product's specific attack surface; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Frank Yaul over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-4060HIGH Multiple buffer overflows in the HttpSprockMake function in http.c in Frank Yaul corehttp 0.5.3alpha allow remote attackers to execute arbitrary code via a long string in the (1) m | Jul 30, 2007 | 9.0 | 34 | NO | YES |
CVE-2009-3586HIGH Off-by-one error in src/http.c in CoreHTTP 0.5.3.1 and earlier allows remote attackers to cause a denial of service or possibly execute arbitrary code via an HTTP request with a lo | Dec 8, 2009 | 7.5 | 33 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Frank Yaul.
Media articles that mention a CVE ID that affects a product developed by Frank Yaul — matched by CVE ID, not by vendor name.