Known Vulnerabilities for Webpack-dev-server by Webpack.js
Listed below are 2 of the newest known vulnerabilities associated with "Webpack-dev-server" by "Webpack.js".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-49993 json | Nuxt is an open-source web development framework for Vue.js. In @nuxt/rspack-builder and @nuxt/webpack-builder from versions ... | Not Provided | 2026-06-12 | 2026-06-12 |
| CVE-2026-45670 json | Nuxt is an open-source web development framework for Vue.js. In @nuxt/rspack-builder and @nuxt/webpack-builder versions 3.15.... | Not Provided | 2026-06-12 | 2026-06-12 |
| CVE-2026-23870 json | A denial of service vulnerability could be triggered by sending specially crafted HTTP requests to server function endpoints,... | Not Provided | 2026-05-06 | 2026-05-06 |
| CVE-2026-23869 json | A denial of service vulnerability exists in React Server Components, affecting the following packages: react-server-dom-parce... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-9595 json | Impact: When a user-configured proxy on webpack-dev-server has a broad context (e.g. /) and ws: true, it also intercepts the ... | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-6402 json | webpack-dev-server versions up to and including 5.2.3 are vulnerable to cross-origin source code exposure when serving over a... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2018-14732 json | An issue was discovered in lib/Server.js in webpack-dev-server before 3.1.6. Attackers are able to steal developer's code bec... | 7.5 - HIGH | 2018-09-21 | 2019-08-01 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Webpack.js | Webpack-dev-server | 3.7.2 | |||
| Application | Webpack.js | Webpack-dev-server | 3.7.1 | |||
| Application | Webpack.js | Webpack-dev-server | 3.7.0 | |||
| Application | Webpack.js | Webpack-dev-server | 3.6.0 | |||
| Application | Webpack.js | Webpack-dev-server | 3.5.1 | |||
| Application | Webpack.js | Webpack-dev-server | 3.5.0 | |||
| Application | Webpack.js | Webpack-dev-server | 3.4.1 | |||
| Application | Webpack.js | Webpack-dev-server | 3.4.0 | |||
| Application | Webpack.js | Webpack-dev-server | 3.3.1 | |||
| Application | Webpack.js | Webpack-dev-server | 3.3.0 | |||
| Application | Webpack.js | Webpack-dev-server | 3.2.1 | |||
| Application | Webpack.js | Webpack-dev-server | 3.2.0 | |||
| Application | Webpack.js | Webpack-dev-server | 3.1.9 | |||
| Application | Webpack.js | Webpack-dev-server | 3.1.8 | |||
| Application | Webpack.js | Webpack-dev-server | 3.1.7 | |||
| Application | Webpack.js | Webpack-dev-server | 3.1.6 | |||
| Application | Webpack.js | Webpack-dev-server | 3.1.5 | |||
| Application | Webpack.js | Webpack-dev-server | 3.1.4 | |||
| Application | Webpack.js | Webpack-dev-server | 3.1.3 | |||
| Application | Webpack.js | Webpack-dev-server | 3.1.2 |