Corecode's vulnerability footprint centers on macUpdater, a software update utility for macOS, with the durable signal characterized by improper file-upload handling that creates risk for arbitrary code execution. Treat this as a compact, focused vendor profile; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Corecode over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-41902HIGH An XPC misconfiguration vulnerability in CoreCode MacUpdater before 2.3.8, and 3.x before 3.1.2, allows attackers to escalate privileges by crafting malicious .pkg files. | Sep 20, 2023 | 7.8 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Corecode.
Media articles that mention a CVE ID that affects a product developed by Corecode — matched by CVE ID, not by vendor name.