Записи appium
7 опубликованных записей вендора appium.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 85,7 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-311 Missing Encryption of Sensitive Data1
- CWE-441 Unintended Proxy or Intermediary ('Confused Deputy')1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
46В плане | CVE-2023-2479Proof of concept | OS Command Injection in appium/appium-desktopappium · appium-desktop · CWE-78 | Критическая9,8 | — | 22,0 % | 2 мая 2023 г. |
40В плане | CVE-2026-58192Эксплойта нет | Appium: Unauthenticated arbitrary file/directory deletion in @appium/storage-pluginappium · appium\/storage-plugin · CWE-22 | Критическая10,0 | — | 0,6 % | 8 июл. 2026 г. |
32Наблюдать | CVE-2016-10557Эксплойта нет | appium-chromedriver is a Node.js wrapper around Chromedriver.appium · appium-chromedriver · CWE-311 | Высокая8,1 | — | 1,1 % | 31 мая 2018 г. |
32Наблюдать | CVE-2026-43910Эксплойта нет | Appium java-client Allows Network Pivot via Unvalidated directConnect Redirect in AppiumCommandExecutorappium · java-client · CWE-441 | Высокая8,2 | — | 0,4 % | 28 июл. 2026 г. |
32Наблюдать | CVE-2026-58500Эксплойта нет | MCP Appium: Unescaped Locator Data XSS in MCP-UI Resource (createLocatorGeneratorUI)appium · appium-mcp · CWE-79 | Высокая8,2 | — | 0,4 % | 13 июл. 2026 г. |
26Наблюдать | CVE-2026-30973Эксплойта нет | Zip Slip arbitrary file write in @appium/support ZIP extractionappium · appium\/support · CWE-22 | Средняя6,5 | — | 0,4 % | 10 мар. 2026 г. |
24Наблюдать | CVE-2026-58191Proof of concept | Appium: Reflected XSS / arbitrary JS in @appium/base-driver /test/guinea-pig* routesappium · appium\/base-driver · CWE-79 | Средняя6,1 | — | 0,6 % | 8 июл. 2026 г. |
- CVE-2023-247946В плане
OS Command Injection in appium/appium-desktop
КритическаяCVSS 9,8Proof of conceptEPSS 22 %appium · appium-desktop2 мая 2023 г.
- CVE-2026-5819240В плане
Appium: Unauthenticated arbitrary file/directory deletion in @appium/storage-plugin
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %appium · appium\/storage-plugin8 июл. 2026 г.
- CVE-2016-1055732Наблюдать
appium-chromedriver is a Node.js wrapper around Chromedriver.
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %appium · appium-chromedriver31 мая 2018 г.
- CVE-2026-4391032Наблюдать
Appium java-client Allows Network Pivot via Unvalidated directConnect Redirect in AppiumCommandExecutor
ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %appium · java-client28 июл. 2026 г.
- CVE-2026-5850032Наблюдать
MCP Appium: Unescaped Locator Data XSS in MCP-UI Resource (createLocatorGeneratorUI)
ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %appium · appium-mcp13 июл. 2026 г.
- CVE-2026-3097326Наблюдать
Zip Slip arbitrary file write in @appium/support ZIP extraction
СредняяCVSS 6,5Эксплойта нетEPSS 0 %appium · appium\/support10 мар. 2026 г.
- CVE-2026-5819124Наблюдать
Appium: Reflected XSS / arbitrary JS in @appium/base-driver /test/guinea-pig* routes
СредняяCVSS 6,1Proof of conceptEPSS 1 %appium · appium\/base-driver8 июл. 2026 г.