yahoo
Security Risk Profile
40
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 70 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from October 1, 1999 to present
70
Total CVEs
18
Critical+High
0
Exploited
7
Unpatched
Threat Assessment
Avg CVSS
5.8
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
7
Critical/High
Risk Level
40/100
medium
Severity Distribution
Critical
10High
8Medium
47Low
4Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
1Age Distribution
Common Weaknesses (CWE)
1
Buffer Overflow
26
2
XSS
15
3
Infoleak
2
4
Input Validation
2
5
Integer Overflow
1
Most Affected Products
1. Yahoo Messenger191
2. Yahoo YUI156
3. Moodle moodle144
4. Mozilla Bugzilla29
5. composer/moodle/moodle12
Recent Vulnerabilities
See more →CVE-2026-34043
CVSS 7.5high
Serialize JavaScript has CPU Exhaustion Denial of Service via crafted array-like objects
3/27/2026
CVE-2025-41408
CVSS 5.3medium
9/5/2025🔧 No Patch
CVE-2024-28895
CVSS 6.1EPSS 0%medium
4/1/2024🔧 No Patch
https://www.bleepingcomputer.com/news/security/hackers-target-fcc-crypto-firms-in-advanced-okta-phishing-attacks/
unknown
Hackers target FCC, crypto firms in advanced Okta phishing attacks
3/2/2024🔧 No Patch
CVE-2019-6035
CVSS 6.1medium
12/26/2019
CVE-2017-2253
CVSS 9.3critical
7/14/2017🔧 No Patch
CVE-2014-7216
CVSS 9.3critical
9/11/2015🔧 No Patch
CVE-2014-5881
CVSS 5.4medium
9/11/2014🔧 No Patch
CVE-2013-6853
CVSS 4.3medium
1/26/2014🔧 No Patch
CVE-2013-6780
CVSS 4.3medium
11/13/2013🔧 No Patch
Monitor yahoo in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.