VYPR

serverless-express

by CodeGenieApp

CVEs (2)

  • CVE-2026-4171MedMar 16, 2026
    risk 0.41cvss 6.3epss 0.00

    A security vulnerability has been detected in CodeGenieApp serverless-express up to 4.17.1. Affected by this issue is some unknown functionality of the file examples/lambda-function-url/packages/api/models/TodoList.ts of the component API Endpoint. The manipulation of the…

  • CVE-2026-3992MedMar 12, 2026
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in CodeGenieApp serverless-express up to 4.17.1. This affects an unknown part of the file utils/dynamodb.ts of the component Users Endpoint. This manipulation of the argument filter causes injection. The attack may be initiated remotely. The…