Blackrainbow maintains a narrowly scoped product portfolio centered on its Nimbus application, where observed vulnerabilities cluster around cross-site scripting and related input-handling defects in web page generation. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Blackrainbow over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-24967MEDIUM Black Rainbow NIMBUS before 3.7.0 allows stored Cross-site Scripting (XSS). | Jun 2, 2022 | 5.4 | 20 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Blackrainbow.
Media articles that mention a CVE ID that affects a product developed by Blackrainbow — matched by CVE ID, not by vendor name.