Clidey develops a focused product line centered on WhoDB, a data query and management tool where the observed vulnerability profile centers on input-handling and access-control weaknesses, including path-traversal flaws and improper query-parameter neutralization. These are characteristic of database and file-access interfaces where boundary validation between user input and filesystem or query operations is critical to security. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Clidey over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-24786CRITICAL WhoDB is an open source database management tool. While the application only displays Sqlite3 databases present in the directory `/db`, there is no path traversal prevention in pla | Feb 6, 2025 | 9.1 | 39 | NO | YES |
CVE-2025-24787HIGH WhoDB is an open source database management tool. In affected versions the application is vulnerable to parameter injection in database connection strings, which allows an attacker | Feb 6, 2025 | 7.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Clidey.
Media articles that mention a CVE ID that affects a product developed by Clidey — matched by CVE ID, not by vendor name.