IPFS maintains a distributed peer-to-peer file system implementation centered on its Go reference implementation, where the observed vulnerability signal points to data-confidentiality issues in cryptographic handling and transmission protection. The recurring weakness class of missing encryption of sensitive data reflects the security-critical role of protecting content across an open, decentralized network; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ipfs over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-10563HIGH During the installation process, the go-ipfs-deps module before 0.4.4 insecurely downloads resources over HTTP. This allows for a MITM attack to compromise the integrity of the res | May 31, 2018 | 8.1 | 23 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ipfs.
Media articles that mention a CVE ID that affects a product developed by Ipfs — matched by CVE ID, not by vendor name.