cBioPortal is a research-oriented web platform for visualization and analysis of cancer genomics datasets, a focused application rather than a broadly deployed infrastructure component. The observed vulnerability exposure centers on resource-exhaustion weaknesses, reflecting the computational demands of large-scale dataset queries and the need for proper rate-limiting and resource-allocation guardrails. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cbioportal Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-38244HIGH A regular expression denial of service (ReDoS) vulnerability exits in cbioportal 3.6.21 and older via a POST request to /ProteinArraySignificanceTest.json. | Dec 16, 2021 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cbioportal Project.
Media articles that mention a CVE ID that affects a product developed by Cbioportal Project — matched by CVE ID, not by vendor name.