Vulnerabilidades em adonisjs
7 resultadosAnálise Vexday
O AdonisJS apresenta 6 vulnerabilidades catalogadas, com 1 crítica (CVSS ≥9.0), mas nenhuma sob ataque ativo conhecido. A fraqueza dominante é CWE-1321 (Improperly Controlled Modification of Object Prototype Attributes), padrão em frameworks JavaScript. Com apenas 1 vulnerabilidade publicada nos últimos 90 dias, o risco atual é contido, embora demande atenção ao modelo de proteção de protótipos e atualização regular da dependência.
CVE-2026-21440CRITICALAdonisJS Path Traversal in Multipart File HandlingEPSS 1.0%CVE-2026-25762HIGHAdonisJS vulnerable to Denial of Service (DoS) via Unrestricted Memory Buffering in PartHandler during File Type DetectionEPSS 0.5%CVE-2026-22814HIGHMass Assignment in AdonisJS Lucid Allows Overwriting Internal ORM StateEPSS 0.5%CVE-2026-25754HIGHAdonisJS multipart body parsing has Prototype Pollution issueEPSS 0.4%CVE-2026-48795HIGHIncomplete fix for CVE-2026-25754 in @adonisjs/bodyparserEPSS 0.3%CVE-2026-40255MEDIUM@adonisjs/http-server has an Open Redirect vulnerabilityEPSS 0.2%CVE-2026-61526MEDIUMAdonisJS HTTP Server is vulnerable to reflected XSS through its exception handlerEPSS 0.2%