WebTorrent develops peer-to-peer file-sharing and distributed hash table (DHT) implementations that operate across client and server contexts, with observed disclosures clustering around information-exposure and input-handling weaknesses including sensitive-data leakage, cross-site scripting, and improper data sanitization. Current vulnerability counts, severity distribution, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Webtorrent over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-10519HIGH A security issue was found in bittorrent-dht before 5.1.3 that allows someone to send a specific series of messages to a listening peer and get it to reveal internal memory. | May 31, 2018 | 7.5 | 22 | NO | NO |
CVE-2019-15782MEDIUM WebTorrent before 0.107.6 allows XSS in the HTTP server via a title or file name. | Aug 29, 2019 | 6.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Webtorrent.
Media articles that mention a CVE ID that affects a product developed by Webtorrent — matched by CVE ID, not by vendor name.