All 3 CVE vulnerabilities found in static-web-server, with AI-generated Chinese analysis, references, and POCs.
Vendor: static-web-server
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-27480 | Static Web Server: Timing-Based Username Enumeration in Basic Authentication CWE-204 | 5.3 | Medium | 2026-02-21 |
| CVE-2025-67487 | Static Web Server is vulnerable to symbolic link Path Traversal CWE-61 | 8.6AI | HighAI | 2025-12-09 |
| CVE-2024-32966 | Stored Cross-site Scripting in directory listings via file names in static-web-server CWE-79 | 5.8 | Medium | 2024-05-01 |
All 3 known CVE vulnerabilities affecting static-web-server with full Chinese analysis, references, and POCs where available.