xerial
Security Risk Profile
45
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 4 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
đź“… Data spans from June 15, 2023 to present
4
Total CVEs
4
Critical+High
0
Exploited
0
Unpatched
Threat Assessment
Avg CVSS
7.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
0
Critical/High
Risk Level
45/100
medium
Severity Distribution
Critical
0High
4Medium
0Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Integer Overflow
2
Most Affected Products
1. maven/org.xerial.snappy:snappy-java4
2. xerial snappy-java4
3. redhat/snappy-java4
4. IBM QRadar SIEM3
5. IBM IBM® Engineering Requirements Management DOORS1
Recent Vulnerabilities
See more →CVE-2023-43642
CVSS 7.5high
Missing upper bound check on chunk length in snappy-java
9/25/2023
CVE-2023-34455
CVSS 7.5high
snappy-java's unchecked chunk length leads to DoS
6/15/2023
CVE-2023-34454
CVSS 7.5high
snappy-java's Integer Overflow vulnerability in compress leads to DoS
6/15/2023
CVE-2023-34453
CVSS 7.5high
snappy-java's Integer Overflow vulnerability in shuffle leads to DoS
6/15/2023
Monitor xerial in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.