Vulnerabilities
Summary — last 7 days
New vulnerabilities2,706▼ 533 vs. last week
Critical / high1,274▼ 219 vs. last week
New active exploitation (KEV)4▼ 5 vs. last week
Unscored (no CVSS)254▼ 249 vs. last week
1 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | Medium (5.4) | 0.27% | — | Lazyer Doodle Drop | 9/22/2014 | 6/17/2026 | The Doodle Drop (aka net.lazyer.DoodleDrop) application 1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. |