Digi International Inc.
Self-Reporting Analysis
Of all the CVEs published by Digi International Inc. as a CNA, 0.0% affect products that Digi International Inc. develops as a vendor.
Of all the CVEs published that affect products developed by Digi International Inc., 0.0% are self-published by Digi International Inc. as a CNA.
Trends Over Time
The number and severity of CVEs published by Digi International Inc. over time
Top CVEs
All CVEs published by Digi International Inc. as a CNA, regardless of affected vendor or product.
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-13319HIGH An injection vulnerability has been discovered in the API feature in Digi On-Prem Manager, enabling an attacker with valid API tokens to inject SQL via crafted input.
The API is n | Nov 17, 2025 | 8.8 | 29 | NO | NO |
CVE-2026-12352MEDIUM This vulnerability allows an unauthenticated actor to bypass authentication and gain access to restricted resources on the device. | Jul 7, 2026 | 5.9 | 28 | NO | NO |
CVE-2026-12948MEDIUM A stored cross-site scripting (XSS) vulnerability in the web management interface of the Digi PortServer TS, Digi One SP, Digi One SP IA, and Digi One IA allows a remote, authentic | Jul 7, 2026 | 4.8 | 25 | NO | NO |
CVE-2025-3659CRITICAL Improper authentication handling was identified in a set of HTTP POST requests affecting the following product families:
* Digi PortServer TS - prior to and including 82000747 | May 12, 2025 | 9.4 | 24 | NO | NO |
CVE Severity & Scoring
Exploit Exposure
Signals from CVEs in this cna scope (4 CVEs).
Social Chatter
An overview of all social media posts that mention a CVE ID published by Digi International Inc. as a CNA.
Media Mentions
Media articles that mention a CVE ID published by Digi International Inc. as a CNA — matched by CVE ID, not by organization name.