Dremio Corporation

First CVE: Apr 21, 2025Active for: 1 year
1
CVEs Published
Bottom 1%
1.0
Avg CVEs / Year
Bottom 1%
8.4
Avg CVSS Score
Higher Avg CVSS Score than 93% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%

Self-Reporting Analysis

Of all the CVEs published by Dremio Corporation as a CNA, 0.0% affect products that Dremio Corporation develops as a vendor.

100.0%
Self-reported: 0Third-party: 1

Of all the CVEs published that affect products developed by Dremio Corporation, 0.0% are self-published by Dremio Corporation as a CNA.

100.0%
Self-published: 0Published by other CNAs: 1

Trends Over Time

The number and severity of CVEs published by Dremio Corporation over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 21, 2025
15 months ago
Most Recent CVE
Apr 21, 2025
460 days ago

Top CVEs

All CVEs published by Dremio Corporation as a CNA, regardless of affected vendor or product.

1 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
An improper authorization vulnerability in Dremio Software allows authenticated users to delete arbitrary files that the system has access to, including system files and files stor
Apr 21, 20258.423NONO

CVE Severity & Scoring

Severity distribution of CVEs published by this CNA1 CVEs
Severity distribution among all CVEs352,427 CVEs
High
Attack Vector
Local0 (0.0%)
Network1 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None1 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low1 (100.0%)
High0 (0.0%)
None0 (0.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this cna scope (1 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID published by Dremio Corporation as a CNA.

Media Mentions

Media articles that mention a CVE ID published by Dremio Corporation as a CNA — matched by CVE ID, not by organization name.

Top CWEs