Skip to main content

CWE archive

CWE-310 CVEs

Programmatic archive

2,510 CVEs tagged with CWE-31058 Critical, 302 High, 2,012 Medium, 138 Low, 0 Unrated.

CVE-2016-10664

Published Jun 4, 2018

mystem is a Node.js wrapper for MyStem morphology text analyzer by Yandex.ru mystem downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be pos…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10662

Published Jun 4, 2018

tomita is a node wrapper for Yandex Tomita Parser tomita downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10656

Published Jun 4, 2018

qbs is a build tool that helps simplify the build process for developing projects across multiple platforms. qbs downloads binary resources over HTTP, which leaves it vulnerable t…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10655

Published Jun 4, 2018

The clang-extra module installs LLVM's clang-extra tools. clang-extra downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10653

Published Jun 4, 2018

xd-testing is a testing library for cross-device (XD) web applications. xd-testing downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be poss…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10647

Published Jun 4, 2018

node-air-sdk is an AIR SDK for nodejs. node-air-sdk downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execu…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10645

Published Jun 4, 2018

grunt-images is a grunt plugin for processing images. grunt-images downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause re…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10643

Published Jun 4, 2018

jstestdriver is a wrapper for Google's jstestdriver. jstestdriver downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause rem…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10642

Published Jun 4, 2018

cmake installs the cmake x86 linux binaries. cmake downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execut…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10640

Published Jun 4, 2018

node-thulac is a node binding for thulac. node-thulac downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code exe…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10639

Published Jun 4, 2018

redis-srvr is a npm wrapper for redis-server. redis-srvr downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10638

Published Jun 4, 2018

js-given is a JavaScript frontend to jgiven. js-given downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code exe…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10637

Published Jun 4, 2018

haxe-dev is a cross-platform toolkit. haxe-dev downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 126-150 of 2,510 CVEsPage 6 of 101