SecAlerts
lighttpd logo

lighttpd

Security Risk Profile

59
/100
medium

Security Risk Score

Comprehensive risk assessment based on 42 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from February 16, 2005 to present

42
Total CVEs
17
Critical+High
0
Exploited
4
Unpatched

Threat Assessment

Avg CVSS
6.2
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
4
Critical/High
Risk Level
59/100
medium

Severity Distribution

Critical
5
High
12
Medium
21
Low
3

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
3

Age Distribution

Common Weaknesses (CWE)

1
Buffer Overflow
5
2
Infoleak
4
3
Use After Free
2
4
Null Pointer Dereference
2
5
Path Traversal
2

Most Affected Products

1. Lighttpd Lighttpd320
2. Debian Debian Linux25
3. openSUSE openSUSE15
4. SUSE SUSE Linux Enterprise Server7
5. debian/lighttpd6

Recent Vulnerabilities

See more →

Monitor lighttpd in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.