Hfs
This hub aggregates every CVE we track for Hfs, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
7
CVEs tracked
2
Critical
0
High
0
In CISA KEV
Severity distribution
MEDIUM5CRITICAL2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
6
0
2024-092026-08
Latest CVEs
The 7 most recently published vulnerabilities affecting Hfs.
- CVE-2026-61505Rejetto HFS < 3.2.1 Limited File Disclosure via Path Traversal in lang Parameter5.3
- CVE-2026-61504Rejetto HFS < 3.2.1 Stored XSS via File Names in Basic Web Listing5.4
- CVE-2026-61503Rejetto HFS < 3.2.1 Username Enumeration via Login Response Differences5.3
- CVE-2026-61502Rejetto HFS < 3.2.1 Cross-Site Request Forgery via GET Requests4.3
- CVE-2026-61501Rejetto HFS < 3.2.1 Stored XSS in Admin Log Viewer6.1
- CVE-2026-61500Rejetto HFS < 3.2.1 Session Forgery via Predictable Signing Key9.8
- CVE-2024-39943rejetto HFS (aka HTTP File Server) 3 before 0.52.10 on Linux, UNIX, and macOS allows OS command execution by remote authenticated users (if they have Upload permissions). This occurs because a shel...9.9
Product normalization is registry-driven with AI assist and human review. How it works