Vulnerabilities
Summary — last 7 days
New vulnerabilities2,780▲ 24 vs. last week
Critical / high1,288▼ 240 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)242▲ 224 vs. last week
2 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | High (7.8) | 0.40% | — | Getfiregpg Iceweasel-firegpg | 11/18/2019 | 6/16/2026 | A symlink issue exists in Iceweasel-firegpg before 0.6 due to insecure tempfile handling. | |
| Modified | High (7.5) | 0.89% | — | Getfiregpg Firegpg | 11/8/2019 | 6/16/2026 | FireGPG before 0.6 handle user’s passphrase and decrypted cleartext insecurely by writing pre-encrypted cleartext and the user's passphrase to disk which may result in the compromise of secure communication or a users’s private key. |