Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Pacparser Project

First CVE: Dec 13, 2022Active for: 4 yearsTotal CVEs: 2

Pacparser Project maintains a niche proxy auto-config parser library that processes PAC files to determine proxy routing, with its vulnerability exposure centered on memory-safety and input-handling issues including buffer overflows, injection flaws, and out-of-bounds memory operations. The product's role in parsing untrusted configuration data creates inherent risk around input validation and buffer management. Live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
2
Total CVEs
More Total CVEs than 56% of tracked vendors
1.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 12% of tracked vendors
7.0
Avg CVSS Score
Higher Avg CVSS Score than 49% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Pacparser Project over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 13, 2022
3 years ago
Most Recent CVE
Jun 30, 2023
1,120 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (2 CVEs).

2 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2019-25078HIGH
A vulnerability classified as problematic was found in pacparser up to 1.3.x. Affected by this vulnerability is the function pacparser_find_proxy of the file src/pacparser.c. The m
Dec 13, 20227.826NONO
CVE-2023-37360MEDIUM
pacparser_find_proxy in Pacparser before 1.4.2 allows JavaScript injection, and possibly privilege escalation, when the attacker controls the URL (which may be realistic within ent
Jun 30, 20236.119NONO
View all 2 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products2 CVEs
50%
50%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local1 (50.0%)
Network1 (50.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None1 (50.0%)
Unknown0 (0.0%)
Required1 (50.0%)
Privileges Required
Low1 (50.0%)
High0 (0.0%)
None1 (50.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (2 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Pacparser Project.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Pacparser Project — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Pacparser Project's Products

View all 2 CNAs →

Top CWEs