Aggregates CVE and security vulnerability intelligence across all parse-url_project-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.
Disclosed issues often relate to vendor risk cross-site scripting, vendor risk ssrf, and vendor risk path handling; exposure may include vendor impact session compromise in vendor surface software deployment contexts.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2022-3224 | Misinterpretation of Input in GitHub repository ionicabizau/parse-url prior to 8.1.0. | [email protected] | 6.1 | 0.57% | 2022-09-15 | 2024-11-21 |
| CVE-2022-2900 | Server-Side Request Forgery (SSRF) in GitHub repository ionicabizau/parse-url prior to 8.1.0. | [email protected] | 9.1 | 0.88% | 2022-09-14 | 2024-11-21 |
| CVE-2022-2218 | Cross-site Scripting (XSS) - Stored in GitHub repository ionicabizau/parse-url prior to 7.0.0. | [email protected] | 6.1 | 0.78% | 2022-06-27 | 2024-11-21 |
| CVE-2022-2216 | Server-Side Request Forgery (SSRF) in GitHub repository ionicabizau/parse-url prior to 7.0.0. | [email protected] | 9.8 | 1.23% | 2022-06-27 | 2024-11-21 |
| CVE-2022-2217 | Cross-site Scripting (XSS) - Generic in GitHub repository ionicabizau/parse-url prior to 7.0.0. | [email protected] | 6.1 | 0.87% | 2022-06-27 | 2024-11-21 |
| CVE-2022-0722 | Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository ionicabizau/parse-url prior to 7.0.0. | [email protected] | 7.5 | 0.96% | 2022-06-27 | 2024-11-21 |