Angtech operates a modestly scoped application portfolio centered on its Haraj product, which has disclosed vulnerabilities concentrated in web-application input handling. The recurring signal reflects cross-site scripting weaknesses characteristic of web-facing applications where user input flows into rendered content without proper sanitization. Current exploitation activity, severity breakdown, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Angtech over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-31299MEDIUM Haraj v3.7 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in the User Upgrade Form. | Jun 16, 2022 | 6.1 | 32 | NO | YES |
CVE-2022-31300MEDIUM A cross-site scripting vulnerability in the DM Section component of Haraj v3.7 allows attackers to execute arbitrary web scripts or HTML via a crafted POST request. | Jun 16, 2022 | 5.4 | 20 | NO | NO |
CVE-2022-31301MEDIUM Haraj v3.7 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the Post Ads component. | Jun 16, 2022 | 5.4 | 19 | NO | NO |
CVE-2022-31298MEDIUM A cross-site scripting vulnerability in the ads comment section of Haraj v3.7 allows attackers to execute arbitrary web scripts or HTML via a crafted POST request. | Jun 16, 2022 | 5.4 | 19 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Angtech.
Media articles that mention a CVE ID that affects a product developed by Angtech — matched by CVE ID, not by vendor name.