Codester operates a freelance marketplace platform centered on its AstroTalks product, where observed vulnerabilities cluster around data-exposure risks and access-control weaknesses inherent to user-facing web applications. The recurring weakness classes include sensitive information exposure, SQL injection, and improper privilege management, reflecting the authentication and database-query demands of a marketplace handling user accounts and transactions. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Codester over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-5525HIGH Improper privilege management vulnerability in Astrotalks affecting version 10/03/2023. This vulnerability allows a local user to access the application as an administrator without | May 31, 2024 | 8.8 | 26 | NO | NO |
CVE-2024-5523HIGH SQL injection vulnerability in Astrotalks affecting version 10/03/2023. This vulnerability could allow an authenticated local user to send a specially crafted SQL query to the 'sea | May 31, 2024 | 8.8 | 26 | NO | NO |
CVE-2024-5524MEDIUM Information exposure vulnerability in Astrotalks affecting version 10/03/2023. This vulnerability allows unregistered users to access all internal links of the application without | May 31, 2024 | 5.3 | 17 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Codester.
Media articles that mention a CVE ID that affects a product developed by Codester — matched by CVE ID, not by vendor name.