cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2014-0072,https://securityvulnerability.io/vulnerability/CVE-2014-0072,,ios/CDVFileTransfer.m in the Apache Cordova File-Transfer standalone plugin (org.apache.cordova.file-transfer) before 0.4.2 for iOS and the File-Transfer plugin for iOS from Cordova 2.4.0 through 2.9.0 might allow remote attackers to spoof SSL servers by leveraging a default value of true for the trustAllHosts option.,Apache,Cordova File Transfer,7.5,HIGH,0.0024800000246614218,false,,false,false,false,,,false,false,,2017-10-30T19:00:00.000Z,0 CVE-2015-5204,https://securityvulnerability.io/vulnerability/CVE-2015-5204,,CRLF injection vulnerability in the Apache Cordova File Transfer Plugin (cordova-plugin-file-transfer) for Android before 1.3.0 allows remote attackers to inject arbitrary headers via CRLF sequences in the filename of an uploaded file.,Apache,Cordova File Transfer,,,0.00343000004068017,false,,false,false,false,,,false,false,,2015-12-17T19:00:00.000Z,0