Hekto Project maintains a focused web application whose vulnerability profile centers on path traversal and open-redirect weaknesses, both common among application-layer input validation and URL handling. Current severity, exploitation, and exposure details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Hekto Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-3725HIGH hekto node module suffers from a Path Traversal vulnerability due to lack of validation of file, which allows a malicious user to read content of any file with known path. | Jun 7, 2018 | 7.5 | 25 | NO | NO |
CVE-2018-3743MEDIUM Open redirect in hekto <=0.2.3 when target domain name is used as html filename on server. | Jun 1, 2018 | 6.1 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Hekto Project.
Media articles that mention a CVE ID that affects a product developed by Hekto Project — matched by CVE ID, not by vendor name.