Skip to content
Noroxi

hapijs records

7 published records for vendor hapijs.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

All records

7 records
  • CVE-2018-3728
    36Monitor

    hoek node module before 4.2.0 and 5.0.x before 5.0.3 suffers from a Modification of Assumed-Immutable Data (MAID) vulnerability via 'merge'

    HighCVSS 8.8No exploitEPSS 4%

    hapijs · hoekMar 30, 2018

  • hoek before 8.5.1 and 9.x before 9.0.3 allows prototype poisoning in the clone function.

    HighCVSS 8.1No exploitEPSS 1%

    hapijs · hoekSep 23, 2022

  • CVE-2015-9241
    31Monitor

    Certain input passed into the If-Modified-Since or Last-Modified headers will cause an 'illegal access' exception to be raised.

    HighCVSS 7.5No exploitEPSS 2%

    hapijs · hapiMay 29, 2018

  • hapi is a web and services application framework.

    HighCVSS 7.5No exploitEPSS 2%

    hapijs · hapiJun 4, 2018

  • Nes is a websocket extension library for hapi.

    MediumCVSS 5.9No exploitEPSS 2%

    hapijs · nesJun 4, 2018

  • CVE-2015-9243
    23Monitor

    When server level, connection level or route level CORS configurations in hapi node module before 11.1.4 are combined and when a higher leve

    MediumCVSS 5.9No exploitEPSS 1%

    hapijs · hapiMay 29, 2018

  • CVE-2015-9236
    21Monitor

    Hapi versions less than 11.0.0 implement CORS incorrectly and allowed for configurations that at best returned inconsistent headers and at w

    MediumCVSS 5.3No exploitEPSS 2%

    hapijs · hapiMay 31, 2018