Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Dart Software Development Kit HIGH 7.5
CVE-2026-27704

The Dart and Flutter SDKs provide software development kits for the Dart programming language. In versions of the Dart SDK prior to 3.11.0 and the Fl…

Fix: 3.11.0 / 3.41.0+
Fix from $1,950 2026-02-25
HTTP Server MEDIUM 6.1
CVE-2014-125098

A vulnerability was found in Dart http_server up to 0.9.5 and classified as problematic. Affected by this issue is the function VirtualDirectory of t…

Fix: 0.9.6+
Fix from $1,600 2023-04-10
Dart Software Development Kit CRITICAL 9.8
CVE-2022-3095

The implementation of backslash parsing in the Dart URI class for versions prior to 2.18 and Flutter versions prior to 3.30 differs from the WhatWG U…

Fix: 2.18.0 / 3.3.3+
Fix from $2,300 2022-10-27
Dart Software Development Kit MEDIUM 6.5
CVE-2022-0451

Dart SDK contains the HTTPClient in dart:io library whcih includes authorization headers when handling cross origin redirects. These headers may be e…

Fix: 2.16.0+
Fix from $1,600 2022-02-18
Dart Software Development Kit HIGH 8.8
CVE-2021-22568

When using the dart pub publish command to publish a package to a third-party package server, the request would be authenticated with an oauth2 acces…

Fix: 2.15.0+
Fix from $1,950 2021-12-09
Dart Software Development Kit MEDIUM 6.1
CVE-2021-22540

Bad validation logic in the Dart SDK versions prior to 2.12.3 allow an attacker to use an XSS attack via DOM clobbering. The validation logic in dart…

Fix: 2.12.3+
Fix from $1,600 2021-04-22
Http MEDIUM 6.1
CVE-2020-35669

An issue was discovered in the http package through 0.12.2 for Dart. If the attacker controls the HTTP method and the app is using Request directly, …

Fix: after 0.12.2
Fix from $1,600 2020-12-24
Dart Software Development Kit MEDIUM 6.1
CVE-2020-8923

An improper HTML sanitization in Dart versions up to and including 2.7.1 and dev versions 2.8.0-dev.16.0, allows an attacker leveraging DOM Clobberin…

Fix: 2.7.2+
Fix from $1,600 2020-03-26
Powertcp Webserver For Activex HIGH 7.5
CVE-2012-5389EPSS 7%

NULL Pointer Dereference in PowerTCP WebServer for ActiveX 1.9.2 and earlier allows remote attackers to cause a denial of service (application crash)…

Fix: after 1.9.2
Fix from $1,950 2020-01-23
Powertcp Activex MEDIUM 5.0
CVE-2012-3819

Stack consumption vulnerability in dartwebserver.dll 1.9 and earlier, as used in Dart PowerTCP WebServer for ActiveX and other products, allows remot…

No fix yet
Fix from $1,600 2012-10-04
Powertcp Ftp For Activex HIGH 9.3
CVE-2008-4652EPSS 10%

Buffer overflow in the ActiveX control (DartFtp.dll) in Dart Communications PowerTCP FTP for ActiveX 2.0.2 0 allows remote attackers to execute arbit…

No fix yet
Fix from $1,950 2008-10-22
Dart Ziplite Compression HIGH 9.3
CVE-2007-2855

Buffer overflow in a certain ActiveX control in DartZipLite.dll 1.8.5.3 in Dart ZipLite Compression for ActiveX allows user-assisted remote attackers…

No fix yet
Fix from $1,950 2007-05-24
Powertcp Zip Compression HIGH 9.3
CVE-2007-2856EPSS 7%

Buffer overflow in the Dart Communications PowerTCP ZIP Compression ActiveX control in DartZip.dll 1.8.5.3, when Internet Explorer 6 is used, allows …

No fix yet
Fix from $1,950 2007-05-24