5ire's vulnerability footprint centers on its blockchain and Web3 infrastructure platform, with the observed exposure concentrated in application-layer input handling and code generation. The durable signal reflects recurring weakness classes including cross-site scripting, code injection, improper output encoding, and input validation flaws that are characteristic of dynamically executed or user-facing components. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by 5ire over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-22793CRITICAL 5ire is a cross-platform desktop artificial intelligence assistant and model context protocol client. Prior to version 0.15.3, an unsafe option parsing vulnerability in the ECharts | Jan 21, 2026 | 9.6 | 32 | NO | NO |
CVE-2026-22792CRITICAL 5ire is a cross-platform desktop artificial intelligence assistant and model context protocol client. Prior to version 0.15.3, an unsafe HTML rendering permits untrusted HTML (incl | Jan 21, 2026 | 9.6 | 32 | NO | NO |
CVE-2025-58357CRITICAL 5ire is a cross-platform desktop artificial intelligence assistant and model context protocol client. Version 0.13.2 contains a vulnerability in the chat page's script gadgets that | Sep 4, 2025 | 9.6 | 32 | NO | NO |
CVE-2025-68669CRITICAL 5ire is a cross-platform desktop artificial intelligence assistant and model context protocol client. In versions 0.15.2 and prior, an RCE vulnerability exists in useMarkdown.ts, w | Dec 23, 2025 | 9.6 | 31 | NO | NO |
CVE-2025-47777CRITICAL 5ire is a cross-platform desktop artificial intelligence assistant and model context protocol client. Versions prior to 0.11.1 are vulnerable to stored cross-site scripting in chat | May 14, 2025 | 9.6 | 29 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by 5ire.
Media articles that mention a CVE ID that affects a product developed by 5ire — matched by CVE ID, not by vendor name.