Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Leafkit MEDIUM 6.1
CVE-2026-28499

LeafKit is a templating language with Swift-inspired syntax. Prior to version 1.14.2, HTML escaping doesn't work correctly when a template prints a c…

Fix: 1.14.2+
Fix from $1,600 2026-03-18
Leafkit MEDIUM 6.1
CVE-2026-27120

Leafkit is a templating language with Swift-inspired syntax. Prior to 1.4.1, htmlEscaped in leaf-kit will only escape html special characters if the …

Fix: 1.14.1+
Fix from $1,600 2026-02-20
Vapor MEDIUM 6.5
CVE-2024-21631

Vapor is an HTTP web framework for Swift. Prior to version 4.90.0, Vapor's `vapor_urlparser_parse` function uses `uint16_t` indexes when parsing a UR…

Fix: 4.90.0+
Fix from $1,600 2024-01-03
Vapor MEDIUM 5.3
CVE-2023-44386

Vapor is an HTTP web framework for Swift. There is a denial of service vulnerability impacting all users of affected versions of Vapor. The HTTP1 err…

Fix: 4.84.2+
Fix from $1,600 2023-10-05
Postgresnio MEDIUM 5.9
CVE-2023-31136

PostgresNIO is a Swift client for PostgreSQL. Any user of PostgresNIO prior to version 1.14.2 connecting to servers with TLS enabled is vulnerable to…

Fix: 1.14.2+
Fix from $1,600 2023-05-09
Vapor HIGH 7.5
CVE-2022-31019

Vapor is a server-side Swift HTTP web framework. When using automatic content decoding an attacker can craft a request body that can make the server …

Fix: 4.61.1+
Fix from $1,950 2022-06-09
Vapor HIGH 7.5
CVE-2022-31005

Vapor is an HTTP web framework for Swift. Users of Vapor prior to version 4.60.3 with FileMiddleware enabled are vulnerable to an integer overflow vu…

Fix: 4.60.3+
Fix from $1,950 2022-05-31
Leafkit MEDIUM 6.1
CVE-2021-37634

Leafkit is a templating language with Swift-inspired syntax. Versions prior to 1.3.0 are susceptible to Cross-site Scripting (XSS) attacks. This affe…

Fix: 1.3.0+
Fix from $1,600 2021-08-09