ws_project has 2 CVEs on record. The median CVSS is 6.0 (medium).
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 6.0
- Publish → KEV
- —
- Last 90 days
- 0 prev 2
Weakness classes
Products
- ws 2
2
Total CVEs
0
Critical
0
CISA KEV
0
Exploited
ws_project vulnerabilities
CVEs affecting ws_project, newest first. Open any entry for full detail, references, and exploit status.
2 CVEsRSS
CVE-2026-48779High· 7.5PoCws is an open source WebSocket client and server for Node.js
ws is an open source WebSocket client and server for Node.js. All versions from 1.1.0 up to (but not including) 5.2.5, from 6.0.0 up to 6.2.4, from 7.0.0 up to 7.5.11, and from 8.0.0 up to 8.21.0 are affected by a memory exhaustion DoS v…
▾ Midnightws_project · wsEPSS 0.81%via NVD
CVE-2026-45736Medium· 4.4PoCws is an open source WebSocket client and server for Node.js
ws is an open source WebSocket client and server for Node.js. Prior to 8.20.1, the websocket.close() implementation is vulnerable to uninitialized memory disclosure when a TypedArray is passed as the reason argument. This vulnerability i…
▾ Twilightws_project · wsEPSS 0.74%via NVD