Known vulnerabilities in mountebank
Vendor:
Brandon Byars
Software:
mountebank
Software CPE:
cpe:2.3:a:bbyars:mountebank:*:*:*:*:*:*:*:*
Website:
https://github.com/bbyars
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
2.9.4
2.9.3
2.9.2
2.9.1
2.8.3
2.8.2
2.8.1
2.8.0
2.7.0
2.6.0
2.4.1
2.4.2
2.5.0
2.4.0
2.3.3
2.3.2
2.3.1
2.3.0
2.2.1
2.2.0
2.1.2
2.1.1
2.1.0
2.0.0
1.16.0
1.15.0
1.14.1
1.14.0
1.13.0
1.12.0
1.11.0
1.10.0
1.9.0
1.8.0
1.7.2
1.7.1
1.7.0
1.6.0
1.5.1
1.5.0
1.4.3
1.4.2
1.4.1
1.4.0
1.3.1
1.3.0
1.2.122
1.2.103
1.2.56
1.2.45
1.2.30
1.2.0
1.1.36
1.1.10
1.1.6
1.1.4
1.1.1
1.1.0
1.0.384
1.0.383
1.0.373
1.0.372
1.0.371
1.0.368
1.0.366
1.0.365
1.0.363
1.0.361
1.0.357
1.0.347
1.0.286
1.0.72
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU47339 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') |
CWE-22 | Medium | 2.3.2 | 06.10.2020 |
SB2020100604 |
||
| #VU47338 - Resource exhaustion |
CWE-400 | Medium | 2.3.1 | 06.10.2020 |
SB2020100603 |