Записи cryptomator
10 опубликованных записей вендора cryptomator.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 70 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-346 Origin Validation Error3
- CWE-269 Improper Privilege Management2
- CWE-209 Generation of Error Message Containing Sensitive Information1
- CWE-319 Cleartext Transmission of Sensitive Information1
- CWE-426 Untrusted Search Path1
- CWE-305 Authentication Bypass by Primary Weakness1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
10 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
34Наблюдать | CVE-2026-32309Эксплойта нет | Cryptomator: Hub unlocking accepts plaintext HTTP and unvalidated endpoint schemescryptomator · cryptomator · CWE-319 | Высокая8,7 | — | 0,3 % | 20 мар. 2026 г. |
31Наблюдать | CVE-2022-25366Эксплойта нет | Cryptomator through 1.6.5 allows DYLIB injection because, although it has the flag 0x1000 for Hardened Runtime, it has the com.apple.securitcryptomator · cryptomator · CWE-426 | Высокая7,8 | — | 0,6 % | 18 февр. 2022 г. |
31Наблюдать | CVE-2023-39520Эксплойта нет | Cryptomator vulnerable to Local Elevation of Privilegescryptomator · cryptomator · CWE-269 | Высокая7,8 | — | 0,3 % | 7 авг. 2023 г. |
31Наблюдать | CVE-2023-37907Эксплойта нет | Cryptomator's MSI installer allows local privilege escalationcryptomator · cryptomator · CWE-269 | Высокая7,8 | — | 0,2 % | 25 июл. 2023 г. |
23Наблюдать | CVE-2026-32303Эксплойта нет | Cryptomator: Tampered vault configuration allows MITM attack on Hub APIcryptomator · cryptomator · CWE-346 | Средняя5,9 | — | 0,2 % | 20 мар. 2026 г. |
23Наблюдать | CVE-2026-32318Эксплойта нет | Cryptomator for IOS: Tampered vault configuration allows MITM attack on Hub APIcryptomator · cryptomator · CWE-346 | Средняя5,9 | — | 0,1 % | 20 мар. 2026 г. |
23Наблюдать | CVE-2026-32317Эксплойта нет | Cryptomator for Android: Tampered vault configuration allows MITM attack on Hub APIcryptomator · cryptomator · CWE-346 | Средняя5,9 | — | 0,1 % | 20 мар. 2026 г. |
21Наблюдать | CVE-2026-32310Эксплойта нет | Cryptomator: Unverified masterkeyfile key IDs can access arbitrary local or UNC pathscryptomator · cryptomator · CWE-22 | Средняя5,3 | — | 0,4 % | 20 мар. 2026 г. |
21Наблюдать | CVE-2026-29110Эксплойта нет | Cryptomator: Leaking of cleartext paths into log file in non-debug modecryptomator · cryptomator · CWE-209 | Средняя5,3 | — | 0,2 % | 6 мар. 2026 г. |
19Наблюдать | CVE-2026-33472Эксплойта нет | Cryptomator Hub OAuth token exchange HTTP downgrade via getAuthority() scheme confusion (CVE-2026-32303 bypass)cryptomator · cryptomator · CWE-305 | Средняя4,8 | — | 0,1 % | 16 апр. 2026 г. |
- CVE-2026-3230934Наблюдать
Cryptomator: Hub unlocking accepts plaintext HTTP and unvalidated endpoint schemes
ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %cryptomator · cryptomator20 мар. 2026 г.
- CVE-2022-2536631Наблюдать
Cryptomator through 1.6.5 allows DYLIB injection because, although it has the flag 0x1000 for Hardened Runtime, it has the com.apple.securit
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %cryptomator · cryptomator18 февр. 2022 г.
- CVE-2023-3952031Наблюдать
Cryptomator vulnerable to Local Elevation of Privileges
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %cryptomator · cryptomator7 авг. 2023 г.
- CVE-2023-3790731Наблюдать
Cryptomator's MSI installer allows local privilege escalation
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %cryptomator · cryptomator25 июл. 2023 г.
- CVE-2026-3230323Наблюдать
Cryptomator: Tampered vault configuration allows MITM attack on Hub API
СредняяCVSS 5,9Эксплойта нетEPSS 0 %cryptomator · cryptomator20 мар. 2026 г.
- CVE-2026-3231823Наблюдать
Cryptomator for IOS: Tampered vault configuration allows MITM attack on Hub API
СредняяCVSS 5,9Эксплойта нетEPSS 0 %cryptomator · cryptomator20 мар. 2026 г.
- CVE-2026-3231723Наблюдать
Cryptomator for Android: Tampered vault configuration allows MITM attack on Hub API
СредняяCVSS 5,9Эксплойта нетEPSS 0 %cryptomator · cryptomator20 мар. 2026 г.
- CVE-2026-3231021Наблюдать
Cryptomator: Unverified masterkeyfile key IDs can access arbitrary local or UNC paths
СредняяCVSS 5,3Эксплойта нетEPSS 0 %cryptomator · cryptomator20 мар. 2026 г.
- CVE-2026-2911021Наблюдать
Cryptomator: Leaking of cleartext paths into log file in non-debug mode
СредняяCVSS 5,3Эксплойта нетEPSS 0 %cryptomator · cryptomator6 мар. 2026 г.
- CVE-2026-3347219Наблюдать
Cryptomator Hub OAuth token exchange HTTP downgrade via getAuthority() scheme confusion (CVE-2026-32303 bypass)
СредняяCVSS 4,8Эксплойта нетEPSS 0 %cryptomator · cryptomator16 апр. 2026 г.