proton records
3 published records for vendor proton.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-428 Unquoted Search Path or Element1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
34Monitor | CVE-2022-50917No exploit | ProtonVPN 1.26.0 - Unquoted Service Pathproton · protonvpn · CWE-428 | High8.5 | — | 0.2% | Jan 13, 2026 |
31Monitor | CVE-2024-37391No exploit | ProtonVPN before 3.2.10 on Windows mishandles the drive installer path, which should use this: '"' + ExpandConstant('{autopf}\Proton\Drive')proton · protonvpn · CWE-78 | High7.8 | — | 0.3% | Jul 22, 2024 |
21Monitor | CVE-2006-3293No exploit | parse_notice (TiCPU) in EnergyMech (emech) before 3.0.2 allows remote attackers to cause a denial of service (crash) via empty IRC CTCP NOTIproton · energymech irc bot | Medium5.0 | — | 1.8% | Jun 28, 2006 |
- CVE-2022-5091734Monitor
ProtonVPN 1.26.0 - Unquoted Service Path
HighCVSS 8.5No exploitEPSS 0%proton · protonvpnJan 13, 2026
- CVE-2024-3739131Monitor
ProtonVPN before 3.2.10 on Windows mishandles the drive installer path, which should use this: '"' + ExpandConstant('{autopf}\Proton\Drive')
HighCVSS 7.8No exploitEPSS 0%proton · protonvpnJul 22, 2024
- CVE-2006-329321Monitor
parse_notice (TiCPU) in EnergyMech (emech) before 3.0.2 allows remote attackers to cause a denial of service (crash) via empty IRC CTCP NOTI
MediumCVSS 5.0No exploitEPSS 2%proton · energymech irc botJun 28, 2006