Package impact
Go / github.com/syncthing/syncthing
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-21404 | medium | — | 5.5 | 5y ago | Syncthing is a continuous file synchronization program. In Syncthing before version 1.15.0, the relay server `strelaysrv` can be caused to crash and exit by sending a relay message with a negative le… | |||
| CVE-2022-46165 | unknown | — | — | 3y ago | Syncthing is an open source, continuous file synchronization program. In versions prior to 1.23.5 a compromised instance with shared folders could sync malicious files which contain arbitrary HTML an… | |||
| CVE-2017-1000420 | unknown | — | — | 4y ago | Syncthing version 0.14.33 and older is vulnerable to symlink traversal resulting in arbitrary file overwrite |