VYPR

Restify

by Restify

CVEs (2)

  • CVE-2017-16018MedJun 4, 2018
    risk 0.40cvss 6.1epss 0.01

    Restify is a framework for building REST APIs. Restify >=2.0.0 <=4.0.4 using URL encoded script tags in a non-existent URL, an attacker can get script to run in some browsers.

  • CVE-2026-90494MedSep 13, 2026
    risk 0.34cvss 5.3epss 0.01

    A flaw has been found in restify node-restify up to 12.0.0. This affects the function serveStatic in the library /lib/plugins/static.js. This manipulation causes path traversal. The attack can be initiated remotely. The vendor was contacted early about this disclosure but did…