VYPR
Vendor

Servicestack

Products
1
CVEs
4
Across products
4
Status
Private

Products

1

Recent CVEs

4
  • CVE-2025-6445HigJun 25, 2025
    risk 0.53cvss 8.1epss 0.01

    ServiceStack FindType Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of ServiceStack. Interaction with this library is required to exploit this vulnerability but attack…

  • CVE-2025-6444MedJun 25, 2025
    risk 0.38cvss 5.9epss 0.00

    ServiceStack GetErrorResponse Improper Input Validation NTLM Relay Vulnerability. This vulnerability allows remote attackers to relay NTLM credentials on affected installations of ServiceStack. Interaction with this library is required to exploit this vulnerability but attack…

  • CVE-2019-1010199MedJul 23, 2019
    risk 0.33cvss 6.1epss 0.01

    ServiceStack ServiceStack Framework 4.5.14 is affected by: Cross Site Scripting (XSS). The impact is: JavaScrpit is reflected in the server response, hence executed by the browser. The component is: the query used in the GET request is prone. The attack vector is: Since there is…

  • CVE-2020-28042MedNov 2, 2020
    risk 0.28cvss 5.3epss 0.02

    ServiceStack before 5.9.2 mishandles JWT signature verification unless an application has a custom ValidateToken function that establishes a valid minimum length for a signature.