Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Proget — Vulnerabilities & Security Advisories 7

Browse all 7 CVE security advisories affecting Proget. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Proget serves as a package management solution for .NET, NuGet, npm, and other ecosystems, enabling organizations to host and distribute software packages internally. Historically, the platform has been susceptible to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from improper input validation and access control flaws. While no major public incidents have been widely documented, the seven recorded CVEs highlight recurring security concerns in web interfaces and authentication mechanisms. The application's exposure to internet-facing deployments increases its risk profile, particularly when default configurations remain unchanged or security patches are not promptly applied.

Top products by Proget: Proget
CVE ID Title CVSS Severity Published
CVE-2025-1421 Formula injection in a CSV file in Proget MDM — Proget CWE-1236 6.5AI Medium AI 2025-05-21
CVE-2025-1420 XSS in Proget MDM — Proget CWE-79 4.8AI Medium AI 2025-05-21
CVE-2025-1419 XSS in Proget MDM — Proget CWE-79 4.8AI Medium AI 2025-05-21
CVE-2025-1418 Information disclosure in Proget MDM — Proget CWE-863 4.3AI Medium AI 2025-05-21
CVE-2025-1417 Information disclosure in Proget MDM — Proget CWE-863 5.3AI Medium AI 2025-05-21
CVE-2025-1416 Password disclosure in Proget MDM — Proget CWE-863 7.5AI High AI 2025-05-21
CVE-2025-1415 Information disclosure in Proget MDM — Proget CWE-863 5.3AI Medium AI 2025-05-21

This page lists every published CVE security advisory associated with Proget. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.