VYPR
Vendor

HTML Pages Project

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2018-3744CriMay 29, 2018
    risk 0.64cvss 9.8epss 0.02

    The html-pages node module contains a path traversal vulnerabilities that allows an attacker to read any file from the server with cURL.

  • CVE-2018-16481MedFeb 1, 2019
    risk 0.40cvss 6.1epss 0.01

    A XSS vulnerability was found in html-page <=2.1.1 that allows malicious Javascript code to be executed in the user's browser due to the absence of sanitization of the paths before rendering.