| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-33151 | socket.io allows an unbounded number of binary attachments | socketio | socket.io | 中危 | - | 2026-03-20 20:13:31 | Deep Dive |
| CVE-2025-61765 | python-socketio vulnerable to arbitrary Python code execution (RCE) through malicious pickle deserialization in certain multi-server deployments | miguelgrinberg | python-socketio | Medium | 6.4 | 2025-10-06 16:04:23 | Deep Dive |
| CVE-2024-38355 | Unhandled 'error' event in socket.io | socketio | socket.io | High | 7.3 | 2024-06-19 19:48:50 | Deep Dive |
| CVE-2023-32695 | Insufficient validation when decoding a Socket.IO packet | socketio | socket.io-parser | High | 7.3 | 2023-05-27 15:44:03 | Deep Dive |
| CVE-2023-31125 | Uncaught exception in engine.io | socketio | engine.io | Medium | 6.5 | 2023-05-08 20:21:01 | Deep Dive |
| CVE-2022-41940 | Uncaught exception in engine.io | socketio | engine.io | High | 7.1 | 2022-11-22 00:00:00 | Deep Dive |
| CVE-2022-21676 | Uncaught Exception in engine.io | socketio | engine.io | High | 7.5 | 2022-01-12 18:25:15 | Deep Dive |
| CVE-2016-10681 | roslib-socketio 安全漏洞 | HackerOne | roslib-socketio node module | 高危 | - | 2018-05-29 20:00:00 | Deep Dive |