proxygen project records
5 published records for vendor proxygen project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-284 Improper Access Control2
- CWE-400 Uncontrolled Resource Consumption2
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2015-7264No exploit | The SPDY/2 codec in Facebook Proxygen before 2015-11-09 truncates a certain field to two bytes, which allows hijacking and injection attacksproxygen project · proxygen · CWE-74 | Critical9.8 | — | 1.2% | Apr 9, 2017 |
30Monitor | CVE-2018-6346No exploit | A potential denial-of-service issue in the Proxygen handling of invalid HTTP2 priority settings (specifically a circular dependency).proxygen project · proxygen · CWE-400 | High7.5 | — | 1.4% | Dec 31, 2018 |
30Monitor | CVE-2018-6347No exploit | An issue in the Proxygen handling of HTTP2 parsing of headers/trailers can lead to a denial-of-service attack.proxygen project · proxygen · CWE-400 | High7.5 | — | 1.4% | Dec 31, 2018 |
30Monitor | CVE-2015-7263No exploit | The SPDY/2 codec in Facebook Proxygen before 2015-11-09 allows remote attackers to conduct hijacking attacks and bypass ACL checks via a craproxygen project · proxygen · CWE-284 | High7.5 | — | 1.2% | Apr 9, 2017 |
30Monitor | CVE-2015-7265No exploit | Facebook Proxygen before 2015-11-09 mismanages HTTPMessage.request state, which allows remote attackers to conduct hijacking attacks and bypproxygen project · proxygen · CWE-284 | High7.5 | — | 1.2% | Apr 9, 2017 |
- CVE-2015-726439Monitor
The SPDY/2 codec in Facebook Proxygen before 2015-11-09 truncates a certain field to two bytes, which allows hijacking and injection attacks
CriticalCVSS 9.8No exploitEPSS 1%proxygen project · proxygenApr 9, 2017
- CVE-2018-634630Monitor
A potential denial-of-service issue in the Proxygen handling of invalid HTTP2 priority settings (specifically a circular dependency).
HighCVSS 7.5No exploitEPSS 1%proxygen project · proxygenDec 31, 2018
- CVE-2018-634730Monitor
An issue in the Proxygen handling of HTTP2 parsing of headers/trailers can lead to a denial-of-service attack.
HighCVSS 7.5No exploitEPSS 1%proxygen project · proxygenDec 31, 2018
- CVE-2015-726330Monitor
The SPDY/2 codec in Facebook Proxygen before 2015-11-09 allows remote attackers to conduct hijacking attacks and bypass ACL checks via a cra
HighCVSS 7.5No exploitEPSS 1%proxygen project · proxygenApr 9, 2017
- CVE-2015-726530Monitor
Facebook Proxygen before 2015-11-09 mismanages HTTPMessage.request state, which allows remote attackers to conduct hijacking attacks and byp
HighCVSS 7.5No exploitEPSS 1%proxygen project · proxygenApr 9, 2017