Txtdot is a niche web proxy and text-rendering service designed to simplify access to content-heavy websites, presenting a focused attack surface centered on server-side request handling. The observed vulnerability pattern reflects the service's intermediary role and its need to safely fetch and process remote content, with exposure concentrating in server-side request forgery weaknesses that arise from insufficient validation of user-supplied URLs. Live severity, exploitation, and current exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Txtdot over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-41813HIGH txtdot is an HTTP proxy that parses only text, links, and pictures from pages, removing ads and heavy scripts. Starting in version 1.4.0 and prior to version 1.6.1, a Server-Side R | Jul 26, 2024 | 7.5 | 22 | NO | NO |
CVE-2024-41812HIGH txtdot is an HTTP proxy that parses only text, links, and pictures from pages, removing ads and heavy scripts. Prior to version 1.7.0, a Server-Side Request Forgery (SSRF) vulnerab | Jul 26, 2024 | 7.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Txtdot.
Media articles that mention a CVE ID that affects a product developed by Txtdot — matched by CVE ID, not by vendor name.