mongo-express project
Security Risk Profile
28
/100
lowSecurity Risk Score
Comprehensive risk assessment based on 5 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from December 24, 2019 to present
5
Total CVEs
4
Critical+High
1
Exploited
1
Unpatched
Threat Assessment
Avg CVSS
8.3
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
1
Critical/High
Risk Level
28/100
low
⚠️ 1 Active Exploits
Severity Distribution
Critical
2High
2Medium
1Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
1Age Distribution
Common Weaknesses (CWE)
1
CSRF
1
2
XSS
1
3
Input Validation
1
4
OS Command Injection
1
5
Code Injection
1
Most Affected Products
1. Mongo-express Project Mongo-express Node.js4
2. Mongo-express Project Mongo-express3
3. npm/mongo-express2
4. npm/mongodb-query-parser1
5. MongoDB mongo-express1
Recent Vulnerabilities
See more →CVE-2023-52555
CVSS 6.1EPSS 0%medium
3/1/2024🔧 No Patch
CVE-2021-21422
CVSS 8.1high
XSS Vulnerability in mongo-express
6/21/2021
CVE-2021-23372
CVSS 7.5high
Denial of Service (DoS)
4/13/2021🔧 No Patch
CVE-2020-24391
CVSS 9.8critical
3/30/2021
CVE-2019-10758
CVSS 10.0critical
MongoDB mongo-express Remote Code Execution Vulnerability
12/24/2019⚠ Exploited
Monitor mongo-express project in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.