Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Uppy Subscribe
Filtered by product Uppy
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-8135 1 Uppy 1 Uppy 2020-03-24 7.5 HIGH 9.8 CRITICAL
The uppy npm package < 1.9.3 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability, which allows an attacker to scan local or external network or otherwise interact with internal systems.