kromit records
9 published records for vendor kromit.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 22.2%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-20 Improper Input Validation1
- CWE-284 Improper Access Control1
- CWE-1236 Improper Neutralization of Formula Elements in a CSV File1
- CWE-521 Weak Password Requirements1
- CWE-915 Improperly Controlled Modification of Dynamically-Determined Object Attributes1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2022-2595No exploit | Improper Authorization in kromitgmbh/titrakromit · titra · CWE-285 | Critical10.0 | — | 1.3% | Aug 1, 2022 |
39Monitor | CVE-2022-2098No exploit | Weak Password Requirements in kromitgmbh/titrakromit · titra · CWE-521 | Critical9.8 | — | 1.0% | Jun 16, 2022 |
36Monitor | CVE-2025-69288No exploit | Titra has Remote Code Execution in Admin Functionalitykromit · titra · CWE-20 | Critical9.1 | — | 0.9% | Dec 31, 2025 |
32Monitor | CVE-2022-2027No exploit | Improper Neutralization of Formula Elements in a CSV File in kromitgmbh/titrakromit · titra · CWE-1236 | High8.0 | — | 1.2% | Jun 9, 2022 |
32Monitor | CVE-2026-21694No exploit | Titra APIs have Improper Access Controlkromit · titra · CWE-284 | High8.1 | — | 0.3% | Jan 7, 2026 |
21Monitor | CVE-2022-2026No exploit | Cross-site Scripting (XSS) - Stored in kromitgmbh/titrakromit · titra · CWE-79 | Medium5.4 | — | 0.7% | Jun 9, 2022 |
21Monitor | CVE-2022-2028No exploit | Cross-site Scripting (XSS) - Generic in kromitgmbh/titrakromit · titra · CWE-79 | Medium5.4 | — | 0.7% | Jun 9, 2022 |
21Monitor | CVE-2022-2029No exploit | Cross-site Scripting (XSS) - DOM in kromitgmbh/titrakromit · titra · CWE-79 | Medium5.4 | — | 0.7% | Jun 9, 2022 |
17Monitor | CVE-2026-21695No exploit | Titra API Contains Mass Assignment Vulnerabilitykromit · titra · CWE-915 | Medium4.3 | — | 0.3% | Jan 7, 2026 |
- CVE-2022-259540Plan
Improper Authorization in kromitgmbh/titra
CriticalCVSS 10.0No exploitEPSS 1%kromit · titraAug 1, 2022
- CVE-2022-209839Monitor
Weak Password Requirements in kromitgmbh/titra
CriticalCVSS 9.8No exploitEPSS 1%kromit · titraJun 16, 2022
- CVE-2025-6928836Monitor
Titra has Remote Code Execution in Admin Functionality
CriticalCVSS 9.1No exploitEPSS 1%kromit · titraDec 31, 2025
- CVE-2022-202732Monitor
Improper Neutralization of Formula Elements in a CSV File in kromitgmbh/titra
HighCVSS 8.0No exploitEPSS 1%kromit · titraJun 9, 2022
- CVE-2026-2169432Monitor
Titra APIs have Improper Access Control
HighCVSS 8.1No exploitEPSS 0%kromit · titraJan 7, 2026
- CVE-2022-202621Monitor
Cross-site Scripting (XSS) - Stored in kromitgmbh/titra
MediumCVSS 5.4No exploitEPSS 1%kromit · titraJun 9, 2022
- CVE-2022-202821Monitor
Cross-site Scripting (XSS) - Generic in kromitgmbh/titra
MediumCVSS 5.4No exploitEPSS 1%kromit · titraJun 9, 2022
- CVE-2022-202921Monitor
Cross-site Scripting (XSS) - DOM in kromitgmbh/titra
MediumCVSS 5.4No exploitEPSS 1%kromit · titraJun 9, 2022
- CVE-2026-2169517Monitor
Titra API Contains Mass Assignment Vulnerability
MediumCVSS 4.3No exploitEPSS 0%kromit · titraJan 7, 2026