App Project maintains a narrowly scoped application product with a durable signal centered on integer overflow and wraparound conditions, reflecting common arithmetic-handling challenges in software implementation. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by App Project over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-45321HIGH The App::cpanminus package through 1.7047 for Perl downloads code via insecure HTTP, enabling code execution for network attackers. | Aug 27, 2024 | 8.1 | 26 | NO | NO |
CVE-2020-16154HIGH The App::cpanminus package 1.7044 for Perl allows Signature Verification Bypass. | Dec 13, 2021 | 7.8 | 20 | NO | NO |
CVE-2018-13661HIGH The mintToken function of a smart contract implementation for APP, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitra | Jul 9, 2018 | 7.5 | 19 | NO | NO |
CVE-2002-2398MEDIUM The new thread posting page in APBoard 2.02 and 2.03 allows remote attackers to post messages to protected forums by modifying the insertinto parameter. | Dec 31, 2002 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by App Project.
Media articles that mention a CVE ID that affects a product developed by App Project — matched by CVE ID, not by vendor name.