postman records
2 published records for vendor postman.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2024-23738Proof of concept | An issue in Postman version 10.22 and before on macOS allows a remote attacker to execute arbitrary code via the RunAsNode and enableNodeClipostman · postman | Critical9.8 | — | 1.5% | Jan 27, 2024 |
32Monitor | CVE-2018-17215No exploit | An information-disclosure issue was discovered in Postman through 6.3.0.postman · postman · CWE-295 | High8.1 | — | 0.6% | Sep 26, 2018 |
- CVE-2024-2373839Monitor
An issue in Postman version 10.22 and before on macOS allows a remote attacker to execute arbitrary code via the RunAsNode and enableNodeCli
CriticalCVSS 9.8Proof of conceptEPSS 1%postman · postmanJan 27, 2024
- CVE-2018-1721532Monitor
An information-disclosure issue was discovered in Postman through 6.3.0.
HighCVSS 8.1No exploitEPSS 1%postman · postmanSep 26, 2018