The Xmlhttprequest Ssl Project maintains a niche library focused on XML HTTP request handling with SSL/TLS support, serving applications that require secure cross-origin data exchange. Treat this as a compact vendor profile centered on a narrow product scope; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Xmlhttprequest Ssl Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-31597CRITICAL The xmlhttprequest-ssl package before 1.6.1 for Node.js disables SSL certificate validation by default, because rejectUnauthorized (when the property exists but is undefined) is co | Apr 23, 2021 | 9.4 | 29 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Xmlhttprequest Ssl Project.
Media articles that mention a CVE ID that affects a product developed by Xmlhttprequest Ssl Project — matched by CVE ID, not by vendor name.