cryptomator kayıtları
cryptomator üreticisine ait 10 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %70
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-346 Origin Validation Error3
- CWE-269 Improper Privilege Management2
- CWE-209 Generation of Error Message Containing Sensitive Information1
- CWE-319 Cleartext Transmission of Sensitive Information1
- CWE-426 Untrusted Search Path1
- CWE-305 Authentication Bypass by Primary Weakness1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
10 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
34İzleyin | CVE-2026-32309İstismar yok | Cryptomator: Hub unlocking accepts plaintext HTTP and unvalidated endpoint schemescryptomator · cryptomator · CWE-319 | Yüksek8,7 | — | %0,3 | 20 Mar 2026 |
31İzleyin | CVE-2022-25366İstismar yok | Cryptomator through 1.6.5 allows DYLIB injection because, although it has the flag 0x1000 for Hardened Runtime, it has the com.apple.securitcryptomator · cryptomator · CWE-426 | Yüksek7,8 | — | %0,6 | 18 Şub 2022 |
31İzleyin | CVE-2023-39520İstismar yok | Cryptomator vulnerable to Local Elevation of Privilegescryptomator · cryptomator · CWE-269 | Yüksek7,8 | — | %0,3 | 7 Ağu 2023 |
31İzleyin | CVE-2023-37907İstismar yok | Cryptomator's MSI installer allows local privilege escalationcryptomator · cryptomator · CWE-269 | Yüksek7,8 | — | %0,2 | 25 Tem 2023 |
23İzleyin | CVE-2026-32303İstismar yok | Cryptomator: Tampered vault configuration allows MITM attack on Hub APIcryptomator · cryptomator · CWE-346 | Orta5,9 | — | %0,2 | 20 Mar 2026 |
23İzleyin | CVE-2026-32318İstismar yok | Cryptomator for IOS: Tampered vault configuration allows MITM attack on Hub APIcryptomator · cryptomator · CWE-346 | Orta5,9 | — | %0,1 | 20 Mar 2026 |
23İzleyin | CVE-2026-32317İstismar yok | Cryptomator for Android: Tampered vault configuration allows MITM attack on Hub APIcryptomator · cryptomator · CWE-346 | Orta5,9 | — | %0,1 | 20 Mar 2026 |
21İzleyin | CVE-2026-32310İstismar yok | Cryptomator: Unverified masterkeyfile key IDs can access arbitrary local or UNC pathscryptomator · cryptomator · CWE-22 | Orta5,3 | — | %0,4 | 20 Mar 2026 |
21İzleyin | CVE-2026-29110İstismar yok | Cryptomator: Leaking of cleartext paths into log file in non-debug modecryptomator · cryptomator · CWE-209 | Orta5,3 | — | %0,2 | 6 Mar 2026 |
19İzleyin | CVE-2026-33472İstismar yok | Cryptomator Hub OAuth token exchange HTTP downgrade via getAuthority() scheme confusion (CVE-2026-32303 bypass)cryptomator · cryptomator · CWE-305 | Orta4,8 | — | %0,1 | 16 Nis 2026 |
- CVE-2026-3230934İzleyin
Cryptomator: Hub unlocking accepts plaintext HTTP and unvalidated endpoint schemes
YüksekCVSS 8,7İstismar yokEPSS %0cryptomator · cryptomator20 Mar 2026
- CVE-2022-2536631İzleyin
Cryptomator through 1.6.5 allows DYLIB injection because, although it has the flag 0x1000 for Hardened Runtime, it has the com.apple.securit
YüksekCVSS 7,8İstismar yokEPSS %1cryptomator · cryptomator18 Şub 2022
- CVE-2023-3952031İzleyin
Cryptomator vulnerable to Local Elevation of Privileges
YüksekCVSS 7,8İstismar yokEPSS %0cryptomator · cryptomator7 Ağu 2023
- CVE-2023-3790731İzleyin
Cryptomator's MSI installer allows local privilege escalation
YüksekCVSS 7,8İstismar yokEPSS %0cryptomator · cryptomator25 Tem 2023
- CVE-2026-3230323İzleyin
Cryptomator: Tampered vault configuration allows MITM attack on Hub API
OrtaCVSS 5,9İstismar yokEPSS %0cryptomator · cryptomator20 Mar 2026
- CVE-2026-3231823İzleyin
Cryptomator for IOS: Tampered vault configuration allows MITM attack on Hub API
OrtaCVSS 5,9İstismar yokEPSS %0cryptomator · cryptomator20 Mar 2026
- CVE-2026-3231723İzleyin
Cryptomator for Android: Tampered vault configuration allows MITM attack on Hub API
OrtaCVSS 5,9İstismar yokEPSS %0cryptomator · cryptomator20 Mar 2026
- CVE-2026-3231021İzleyin
Cryptomator: Unverified masterkeyfile key IDs can access arbitrary local or UNC paths
OrtaCVSS 5,3İstismar yokEPSS %0cryptomator · cryptomator20 Mar 2026
- CVE-2026-2911021İzleyin
Cryptomator: Leaking of cleartext paths into log file in non-debug mode
OrtaCVSS 5,3İstismar yokEPSS %0cryptomator · cryptomator6 Mar 2026
- CVE-2026-3347219İzleyin
Cryptomator Hub OAuth token exchange HTTP downgrade via getAuthority() scheme confusion (CVE-2026-32303 bypass)
OrtaCVSS 4,8İstismar yokEPSS %0cryptomator · cryptomator16 Nis 2026