Vulnerabilities

Summary — last 7 days

New vulnerabilities2,780▲ 24 vs. last week
Critical / high1,288▼ 240 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)242▲ 224 vs. last week
–

2 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedHigh (7.8)0.40%—Getfiregpg Iceweasel-firegpg11/18/20196/16/2026
A symlink issue exists in Iceweasel-firegpg before 0.6 due to insecure tempfile handling.
ModifiedHigh (7.5)0.89%—Getfiregpg Firegpg11/8/20196/16/2026
FireGPG before 0.6 handle user’s passphrase and decrypted cleartext insecurely by writing pre-encrypted cleartext and the user's passphrase to disk which may result in the compromise of secure communication or a users’s private key.