Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Aquaplatform

First CVE: Nov 20, 2025Active for: 1 yearTotal CVEs: 9

Aquaplatform's vulnerability footprint centers on its Revive AdServer product, a web-based digital advertising platform deployed across publisher and network environments. The recurring weakness classes reflect the application's web-facing role and input-handling demands: cross-site scripting, authorization flaws, Unicode-encoding issues, whitespace normalization, and resource-consumption conditions are the durable signature of this vendor's disclosures. Live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
9
Total CVEs
More Total CVEs than 91% of tracked vendors
4.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 97% of tracked vendors
5.7
Avg CVSS Score
Higher Avg CVSS Score than 25% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Aquaplatform over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 20, 2025
8 months ago
Most Recent CVE
Jan 20, 2026
185 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (9 CVEs).

9 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-21664MEDIUM
HackerOne community member Huynh Pham Thanh Luc (nigh7c0r3) has reported a reflected XSS vulnerability in the afr.php delivery script of Revive Adserver. An attacker can craft a sp
Jan 20, 20266.124NONO
CVE-2026-21641MEDIUM
HackerOne community member Jad Ghamloush (0xjad) has reported an authorization bypass vulnerability in the `tracker-delete.php` script of Revive Adserver. Users with permissions to
Jan 20, 20266.523NONO
CVE-2025-55128MEDIUM
HackerOne community member Dang Hung Vi (vidang04) has reported an uncontrolled resource consumption vulnerability in the “userlog-index.php”. An attacker with access to the admin
Nov 20, 20256.522NONO
CVE-2025-55126MEDIUM
HackerOne community member Dang Hung Vi (vidang04) has reported a stored XSS vulnerability involving the navigation box at the top of advertiser-related pages, with campaign names
Nov 20, 20256.522NONO
CVE-2025-55129MEDIUM
HackerOne community member Kassem S.(kassem_s94) has reported that username handling in Revive Adserver was still vulnerable to impersonation attacks after the fix for CVE-2025-526
Dec 2, 20255.421NONO
CVE-2026-21663MEDIUM
HackerOne community member Patrick Lang (7yr) has reported a reflected XSS vulnerability in the banner-acl.php script of Revive Adserver. An attacker can craft a specific URL that
Jan 20, 20266.119NONO
CVE-2026-21642MEDIUM
HackerOne community member Patrick Lang (7yr) has reported a reflected XSS vulnerability in the `banner-acl.php` and `channel-acl.php` scripts of Revive Adserver. An attacker can c
Jan 20, 20266.119NONO
CVE-2025-55127MEDIUM
HackerOne community member Dao Hoang Anh (yoyomiski) has reported an improper neutralization of whitespace in the username when adding new users. A username with leading or trailin
Nov 20, 20255.419NONO
CVE-2026-21640LOW
HackerOne community member Faraz Ahmed (PakCyberbot) has reported a format string injection in the Revive Adserver settings. When specific character combinations are used in a sett
Jan 20, 20262.715NONO
View all 9 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products9 CVEs
11%
89%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMedium
Attack Vector
Local0 (0.0%)
Network9 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None6 (66.7%)
Unknown0 (0.0%)
Required3 (33.3%)
Privileges Required
Low4 (44.4%)
High1 (11.1%)
None4 (44.4%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (9 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Aquaplatform.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Aquaplatform — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Aquaplatform's Products

View all 1 CNAs →

Top CWEs