t
tinyproxy project
Security Risk Profile
45
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 5 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from July 30, 2017 to present
5
Total CVEs
3
Critical+High
0
Exploited
1
Unpatched
Threat Assessment
Avg CVSS
7.6
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
1
Critical/High
Risk Level
45/100
medium
Severity Distribution
Critical
1High
2Medium
2Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Integer Overflow
1
2
Use After Free
1
Most Affected Products
1. Tinyproxy Project Tinyproxy6
2. tinyproxy tinyproxy2
3. debian/tinyproxy2
Recent Vulnerabilities
See more →CVE-2026-31842
CVSS 8.7high
Tinyproxy HTTP request parsing desynchronization via case-sensitive Transfer-Encoding handling
Apr 7, 2026🔧 No Patch
CVE-2025-63938
CVSS 6.5medium
Nov 26, 2025
CVE-2023-49606
CVSS 9.8critical
, CVE-2023-40533: memory safety vulnerabilities in tinyproxy <=1.11.1
May 1, 2024
CVE-2022-40468
CVSS 7.5high
Sep 19, 2022
CVE-2017-11747
CVSS 5.5medium
Jul 30, 2017
Monitor tinyproxy project in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.