Vulnerabilities

Summary — last 7 days

New vulnerabilities3,062▲ 584 vs. last week
Critical / high1,459▲ 293 vs. last week
New active exploitation (KEV)5▼ 5 vs. last week
Unscored (no CVSS)382▲ 175 vs. last week
–

3 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
DeferredMedium (6.1)0.25%—Pointsharp Cryptshare ServerAI5/27/20246/17/2026
Pointsharp Cryptshare Server before 7.0.0 has an XSS issue that is related to notification messages.
ModifiedMedium (5.4)0.69%—Cryptshare Server11/30/20216/17/2026
An open redirect through HTML injection in confidential messages in Cryptshare before 5.1.0 allows remote attackers (with permission to provide confidential messages via Cryptshare) to redirect targeted victims to any URL via the '<meta http-equiv="refresh"' substring in the editor parameter.
ModifiedMedium (6.1)0.63%—Cryptshare Server3/15/20216/17/2026
A cross-site scripting (XSS) vulnerability on the Delete Personal Data page in Cryptshare Server before 4.8.0 allows an attacker to inject arbitrary web script or HTML via the user name. The issue is fixed with the version 4.8.1