Catchethq develops a focused data-handling platform, the Catchet product, with a durable signal centered on input-processing and protocol-handling weaknesses including special-element injection, CRLF injection, and type-conversion flaws. These weakness classes reflect common challenges in sanitizing untrusted input and managing data transformation boundaries; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Catchethq over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-39172HIGH Cachet is an open source status page system. Prior to version 2.5.1, authenticated users, regardless of their privileges (User or Admin), can exploit a new line injection in the co | Aug 27, 2021 | 8.8 | 43 | NO | NO |
CVE-2021-39174HIGH Cachet is an open source status page system. Prior to version 2.5.1, authenticated users, regardless of their privileges (User or Admin), can leak the value of any configuration en | Aug 28, 2021 | 8.8 | 30 | NO | NO |
CVE-2021-39173HIGH Cachet is an open source status page system. Prior to version 2.5.1 authenticated users, regardless of their privileges (User or Admin), can trick Cachet and install the instance a | Aug 27, 2021 | 8.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Catchethq.
Media articles that mention a CVE ID that affects a product developed by Catchethq — matched by CVE ID, not by vendor name.