static-web-server
crates.io2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting static-web-serverpage 1 of 1
- CVE-2024-32966MEDIUMCVSS 5.8EG 5.8✓ Fixed in 2.30.02024-05-01
Static Web Server (SWS) is a tiny and fast production-ready web server suitable to serve static web files or assets. In affected versions if directory listings are enabled for a directory that an untrusted user has upload privileges for, a…
- CVE-2025-67487HIGHCVSS 8.6EG 8.6✓ Fixed in 2.40.12025-12-09
Static Web Server (SWS) is a production-ready web server suitable for static web files or assets. Versions 2.40.0 and below contain symbolic links (symlinks) which can be used to access files or directories outside the intended web root fo…
Check whether static-web-server is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for static-web-server CVEs against the assets you own.
Start Free Scan →