transloadit records
4 published records for vendor transloadit.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 75%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2022-0086No exploit | Server-Side Request Forgery (SSRF) in transloadit/uppytransloadit · uppy · CWE-918 | Critical9.8 | — | 1.2% | Jan 4, 2022 |
30Monitor | CVE-2020-8205No exploit | The uppy npm package < 1.13.2 and < 2.0.0-alpha.5 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability, which allows an attactransloadit · uppy · CWE-918 | High7.5 | — | 1.2% | Jul 20, 2020 |
30Monitor | CVE-2022-0528No exploit | Server-Side Request Forgery (SSRF) in transloadit/uppytransloadit · uppy · CWE-918 | High7.5 | — | 1.0% | Mar 3, 2022 |
30Monitor | CVE-2021-44150No exploit | The client in tusdotnet through 2.5.0 relies on SHA-1 to prevent spoofing of file content.transloadit · tusdotnet · CWE-326 | High7.5 | — | 0.5% | Nov 22, 2021 |
- CVE-2022-008639Monitor
Server-Side Request Forgery (SSRF) in transloadit/uppy
CriticalCVSS 9.8No exploitEPSS 1%transloadit · uppyJan 4, 2022
- CVE-2020-820530Monitor
The uppy npm package < 1.13.2 and < 2.0.0-alpha.5 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability, which allows an attac
HighCVSS 7.5No exploitEPSS 1%transloadit · uppyJul 20, 2020
- CVE-2022-052830Monitor
Server-Side Request Forgery (SSRF) in transloadit/uppy
HighCVSS 7.5No exploitEPSS 1%transloadit · uppyMar 3, 2022
- CVE-2021-4415030Monitor
The client in tusdotnet through 2.5.0 relies on SHA-1 to prevent spoofing of file content.
HighCVSS 7.5No exploitEPSS 1%transloadit · tusdotnetNov 22, 2021