Protect AI (formerly huntr.dev)
First CVE: Jun 17, 2021Active for: 5 years
2,390
CVEs Published
More CVEs Published than 94% of tracked CNAs
398.3
Avg CVEs / Year
More Avg CVEs / Year than 96% of tracked CNAs
7.0
Avg CVSS Score
Higher Avg CVSS Score than 43% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%
Trends Over Time
The number and severity of CVEs published by Protect AI (formerly huntr.dev) over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 17, 2021
5 years ago
Most Recent CVE
Jul 21, 2026
3 days ago
Top CVEs
All CVEs published by Protect AI (formerly huntr.dev) as a CNA, regardless of affected vendor or product.
2,390 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-0297CRITICAL Code Injection in GitHub repository pyload/pyload prior to 0.5.0b3.dev31. | Jan 14, 2023 | 9.8 | 93 | NO | YES |
CVE-2023-0315HIGH Command Injection in GitHub repository froxlor/froxlor prior to 2.0.8. | Jan 16, 2023 | 8.8 | 90 | NO | YES |
CVE-2022-0824HIGH Improper Access Control to Remote Code Execution in GitHub repository webmin/webmin prior to 1.990. | Mar 2, 2022 | 8.8 | 90 | NO | YES |
CVE-2024-3408CRITICAL man-group/dtale version 3.10.0 is vulnerable to an authentication bypass and remote code execution (RCE) due to improper input validation. The vulnerability arises from a hardcoded | Jun 6, 2024 | 9.8 | 85 | NO | YES |
CVE-2023-6019CRITICAL A command injection existed in Ray's cpu_profile URL parameter allowing attackers to execute os commands on the system running the ray dashboard remotely without authentication. Th | Nov 16, 2023 | 9.8 | 85 | NO | YES |
CVE-2022-2024CRITICAL OS Command Injection in GitHub repository gogs/gogs prior to 0.12.11. | Feb 25, 2023 | 9.8 | 83 | NO | NO |
CVE-2023-2948MEDIUM Cross-site Scripting (XSS) - Generic in GitHub repository openemr/openemr prior to 7.0.1. | May 28, 2023 | 6.1 | 82 | NO | YES |
CVE-2022-2733MEDIUM Cross-site Scripting (XSS) - Reflected in GitHub repository openemr/openemr prior to 7.0.0.1. | Aug 9, 2022 | 6.1 | 82 | NO | YES |
CVE-2023-6909HIGH Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.9.2. | Dec 18, 2023 | 7.5 | 79 | NO | YES |
CVE-2023-1177CRITICAL Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.2.1.
| Mar 24, 2023 | 9.8 | 79 | NO | YES |
CVE Severity & Scoring
Severity distribution of CVEs published by this CNA2,390 CVEs
48%
36%
15%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local336 (14.1%)
Network2,052 (85.9%)
Unknown0 (0.0%)
Physical1 (0.0%)
Adjacent Network1 (0.0%)
Attack Complexity
Low2,340 (97.9%)
High50 (2.1%)
Unknown0 (0.0%)
User Interaction
None1,251 (52.3%)
Unknown0 (0.0%)
Required1,139 (47.7%)
Privileges Required
Low837 (35.0%)
High158 (6.6%)
None1,395 (58.4%)
Unknown0 (0.0%)
Exploit Exposure
Signals from CVEs in this cna scope (2390 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
8 CVEs
0.3% of CVEs· 80th percentile
Nuclei
106 CVEs
4.4% of CVEs· 91st percentile
ExploitDB
22 CVEs
0.9% of CVEs· 82nd percentile
Social Chatter
An overview of all social media posts that mention a CVE ID published by Protect AI (formerly huntr.dev) as a CNA.
Media Mentions
Media articles that mention a CVE ID published by Protect AI (formerly huntr.dev) as a CNA — matched by CVE ID, not by organization name.