images
15 known vulnerabilities · 0 critical · 2 high
evershop allows unauthenticated attackers to exhaust application server's resources via "GET /images" API
Malicious code in list-images (npm)
evershop allows unauthenticated attackers to force server to initiate HTTP request via "GET /images" API
OpenClaw: Discord event cover images bypassed sandbox media normalization
OpenClaw's image tool bypasses tools.fs.workspaceOnly on sandbox mount paths and exfiltrates out-of-workspace images
Malicious code in images.pages.dev (npm)
Malicious code in @qw-app/images (npm)
Malicious code in images-inliner (npm)
Malicious code in gatsby-remark-images-uploadcare (npm)
Malicious code in gatsby-source-remote-images (npm)
Malicious code in uber-images (npm)
Malicious code in @mparpaillon/imagesloaded (npm)