Boopsie develops a focused portfolio of mobile library applications and services designed for public library systems, including products such as the Anaheim Library 2Go and Deschutes Public MobileLibrary platforms. The observed vulnerability exposure across these products reflects their role as web and mobile-facing library catalog and discovery interfaces. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Boopsie over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-6804MEDIUM The Deschutes Public MobileLibrary (aka com.bredir.boopsie.deschutes) application 4.5.110 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-m | Sep 29, 2014 | 5.4 | 19 | NO | NO |
CVE-2014-6794MEDIUM The AAPLD (aka com.bredir.boopsie.aapld) application 4.5.110 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof serv | Sep 29, 2014 | 5.4 | 18 | NO | NO |
CVE-2014-6789MEDIUM The Anaheim Library 2Go! (aka com.bredir.boopsie.anaheim) application 4.5.110 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attack | Sep 29, 2014 | 5.4 | 17 | NO | NO |
CVE-2014-6957MEDIUM The scottcolibmn (aka com.bredir.boopsie.scottlib) application 4.5.110 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to | Oct 16, 2014 | 5.4 | 15 | NO | NO |
CVE-2014-6898MEDIUM The Boopsie MyLibrary (aka com.bredir.boopsie.mylibrary) application 4.5.110 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attacke | Oct 3, 2014 | 5.4 | 15 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Boopsie.
Media articles that mention a CVE ID that affects a product developed by Boopsie — matched by CVE ID, not by vendor name.