Anyplace Project maintains an indoor-positioning and location-services platform, with its vulnerability footprint centered on the core Anyplace product. The observed exposure reflects XML processing weaknesses, particularly improper restriction of XML external entity references, characteristic of applications that parse untrusted location or configuration data. Live severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Anyplace Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-1000829CRITICAL Anyplace version before commit 80359b4 contains a XML External Entity (XXE) vulnerability in Man in the middle on map API call that can result in Disclosure of confidential data, d | Dec 20, 2018 | 9.0 | 27 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Anyplace Project.
Media articles that mention a CVE ID that affects a product developed by Anyplace Project — matched by CVE ID, not by vendor name.