Bugfinder operates a portfolio of web-facing applications and platforms spanning financial services, directory listings, and exchange utilities, presenting a concentrated attack surface around input handling and file management. The vendor's vulnerabilities recur through application-layer weakness classes including cross-site scripting, SQL injection, and unrestricted file uploads, reflecting the input-validation and access-control demands typical of web applications; a meaningful share reaches serious severity. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Bugfinder over time
Signals from CVEs in this vendor scope (12 CVEs).
12 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-3795CRITICAL A vulnerability classified as critical was found in Bug Finder ChainCity Real Estate Investment Platform 1.0. Affected by this vulnerability is an unknown functionality of the file | Jul 20, 2023 | 9.8 | 25 | NO | NO |
CVE-2023-3796HIGH A vulnerability, which was classified as problematic, has been found in Bug Finder Foody Friend 1.0. Affected by this issue is some unknown functionality of the file /user/profile | Jul 20, 2023 | 8.8 | 24 | NO | NO |
CVE-2023-3835MEDIUM A vulnerability classified as problematic has been found in Bug Finder MineStack 1.0. This affects an unknown part of the file /user/ticket/create of the component Ticket Handler. | Jul 22, 2023 | 6.1 | 20 | NO | NO |
CVE-2023-3834MEDIUM A vulnerability was found in Bug Finder EX-RATE 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /user/ticket/create of the c | Jul 22, 2023 | 6.1 | 20 | NO | NO |
CVE-2023-3832MEDIUM A vulnerability was found in Bug Finder Wedding Wonders 1.0. It has been classified as problematic. Affected is an unknown function of the file /user/ticket/create of the component | Jul 22, 2023 | 6.1 | 20 | NO | NO |
CVE-2023-3830MEDIUM A vulnerability was found in Bug Finder SASS BILLER 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /company/store. The manipulation o | Jul 22, 2023 | 6.1 | 19 | NO | NO |
CVE-2023-3829MEDIUM A vulnerability was found in Bug Finder ICOGenie 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /user/ticket/create of the component | Jul 22, 2023 | 6.1 | 19 | NO | NO |
CVE-2023-3827MEDIUM A vulnerability was found in Bug Finder Listplace Directory Listing Platform 3.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /li | Jul 22, 2023 | 6.1 | 19 | NO | NO |
CVE-2023-3833MEDIUM A vulnerability was found in Bug Finder Montage 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /user/ticket/create | Jul 22, 2023 | 6.1 | 18 | NO | NO |
CVE-2023-3794MEDIUM A vulnerability classified as problematic has been found in Bug Finder ChainCity Real Estate Investment Platform 1.0. Affected is an unknown function of the file /chaincity/user/ti | Jul 20, 2023 | 6.1 | 18 | NO | NO |
Signals from CVEs in this vendor scope (12 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bugfinder.
Media articles that mention a CVE ID that affects a product developed by Bugfinder — matched by CVE ID, not by vendor name.