« Back to list

Bevy

Bevy Events AND Groups: vulnerabilities and CVEs

Bevy Events AND Groups has 1 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.

CVEs1
Last 12 months0
Critical0
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2025-54599High (7.5)0.42%—Sep 2, 2025
The Bevy Event service through 2025-07-22, as used for eBay Seller Events and other activities, allows account takeover, if SSO is used, when a victim changes the email address that they have configured. To exploit…

🎯 How it gets exploited (ATT&CK techniques)

  1. T1098.001 Additional Cloud Credentials1
  2. T1190 Exploit Public-Facing Application1

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.

Other products by Bevy