appium kayıtları
appium üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %85,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-311 Missing Encryption of Sensitive Data1
- CWE-441 Unintended Proxy or Intermediary ('Confused Deputy')1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
46Planlayın | CVE-2023-2479Kavram kanıtı | OS Command Injection in appium/appium-desktopappium · appium-desktop · CWE-78 | Kritik9,8 | — | %22,0 | 2 May 2023 |
40Planlayın | CVE-2026-58192İstismar yok | Appium: Unauthenticated arbitrary file/directory deletion in @appium/storage-pluginappium · appium\/storage-plugin · CWE-22 | Kritik10,0 | — | %0,6 | 8 Tem 2026 |
32İzleyin | CVE-2016-10557İstismar yok | appium-chromedriver is a Node.js wrapper around Chromedriver.appium · appium-chromedriver · CWE-311 | Yüksek8,1 | — | %1,1 | 31 May 2018 |
32İzleyin | CVE-2026-43910İstismar yok | Appium java-client Allows Network Pivot via Unvalidated directConnect Redirect in AppiumCommandExecutorappium · java-client · CWE-441 | Yüksek8,2 | — | %0,4 | 28 Tem 2026 |
32İzleyin | CVE-2026-58500İstismar yok | MCP Appium: Unescaped Locator Data XSS in MCP-UI Resource (createLocatorGeneratorUI)appium · appium-mcp · CWE-79 | Yüksek8,2 | — | %0,4 | 13 Tem 2026 |
26İzleyin | CVE-2026-30973İstismar yok | Zip Slip arbitrary file write in @appium/support ZIP extractionappium · appium\/support · CWE-22 | Orta6,5 | — | %0,4 | 10 Mar 2026 |
24İzleyin | CVE-2026-58191Kavram kanıtı | Appium: Reflected XSS / arbitrary JS in @appium/base-driver /test/guinea-pig* routesappium · appium\/base-driver · CWE-79 | Orta6,1 | — | %0,6 | 8 Tem 2026 |
- CVE-2023-247946Planlayın
OS Command Injection in appium/appium-desktop
KritikCVSS 9,8Kavram kanıtıEPSS %22appium · appium-desktop2 May 2023
- CVE-2026-5819240Planlayın
Appium: Unauthenticated arbitrary file/directory deletion in @appium/storage-plugin
KritikCVSS 10,0İstismar yokEPSS %1appium · appium\/storage-plugin8 Tem 2026
- CVE-2016-1055732İzleyin
appium-chromedriver is a Node.js wrapper around Chromedriver.
YüksekCVSS 8,1İstismar yokEPSS %1appium · appium-chromedriver31 May 2018
- CVE-2026-4391032İzleyin
Appium java-client Allows Network Pivot via Unvalidated directConnect Redirect in AppiumCommandExecutor
YüksekCVSS 8,2İstismar yokEPSS %0appium · java-client28 Tem 2026
- CVE-2026-5850032İzleyin
MCP Appium: Unescaped Locator Data XSS in MCP-UI Resource (createLocatorGeneratorUI)
YüksekCVSS 8,2İstismar yokEPSS %0appium · appium-mcp13 Tem 2026
- CVE-2026-3097326İzleyin
Zip Slip arbitrary file write in @appium/support ZIP extraction
OrtaCVSS 6,5İstismar yokEPSS %0appium · appium\/support10 Mar 2026
- CVE-2026-5819124İzleyin
Appium: Reflected XSS / arbitrary JS in @appium/base-driver /test/guinea-pig* routes
OrtaCVSS 6,1Kavram kanıtıEPSS %1appium · appium\/base-driver8 Tem 2026