VYPR
Medium severity6.1NVD Advisory· Published Jun 4, 2018· Updated Jun 17, 2026

CVE-2017-16018

CVE-2017-16018

Description

Restify is a framework for building REST APIs. Restify >=2.0.0 <=4.0.4 using URL encoded script tags in a non-existent URL, an attacker can get script to run in some browsers.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
restifynpm
>= 2.0.0, < 4.1.04.1.0

Affected products

3
  • cpe:2.3:a:restify:restify:*:*:*:*:*:node.js:*:*
    Range: >=2.0.0,<=4.0.4
  • ghsa-coords
    Range: >= 2.0.0, < 4.1.0
  • HackerOne/restify node modulev5
    Range: >=2.0.0 <=4.0.4

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.