ActivityWatch records
2 published records for vendor activitywatch.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 50%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-290 Authentication Bypass by Spoofing1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
38Monitor | CVE-2022-31149No exploit | ActivityWatch vulnerable to DNS rebinding attackactivitywatch · activitywatch · CWE-290 | Critical9.6 | — | 1.3% | Sep 7, 2022 |
38Monitor | CVE-2021-32692No exploit | Activity Watch vulnerable to command execution on macOS via printAppTitle.scptactivitywatch · activitywatch · CWE-77 | Critical9.6 | — | 0.7% | Dec 22, 2022 |
- CVE-2022-3114938Monitor
ActivityWatch vulnerable to DNS rebinding attack
CriticalCVSS 9.6No exploitEPSS 1%activitywatch · activitywatchSep 7, 2022
- CVE-2021-3269238Monitor
Activity Watch vulnerable to command execution on macOS via printAppTitle.scpt
CriticalCVSS 9.6No exploitEPSS 1%activitywatch · activitywatchDec 22, 2022