Abinitio develops enterprise data governance and integration platforms, with vulnerability exposure centered on its authorization, control, and metadata management products that handle sensitive configuration and access contexts. The recurring weakness classes—cleartext transmission of sensitive information and code injection—reflect the attack surface inherent to systems managing credentials, policies, and dynamic data transformation logic. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Abinitio over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-37382HIGH An issue discovered in import host feature in Ab Initio Metadata Hub and Authorization Gateway before 4.3.1.1 allows attackers to run arbitrary code via crafted modification of ser | Aug 8, 2024 | 7.2 | 21 | NO | NO |
CVE-2021-33408MEDIUM Local File Inclusion vulnerability in Ab Initio Control>Center before 4.0.2.6 allows remote attackers to retrieve arbitrary files. Fixed in v4.0.2.6 and v4.0.3.1. | May 27, 2021 | 6.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Abinitio.
Media articles that mention a CVE ID that affects a product developed by Abinitio — matched by CVE ID, not by vendor name.