CVE-2016-10680: Adamvr-Geoip-Lite Project Adamvr-Geoip-Lite

High severity, CVSS 8.1. EPSS: 0.7% chance of exploitation in the next 30 days.

adamvr-geoip-lite is a light weight native JavaScript implementation of GeoIP API from MaxMind adamvr-geoip-lite downloads geoip resources over HTTP, which leaves it vulnerable to MITM attacks. This impacts the integrity and availability of this geoip data that may alter the decisions made by an application using this data.

Affected products

Published 2018-05-29. Last modified 2026-06-17.