Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Cskefu

First CVE: Aug 26, 2022Active for: 4 yearsTotal CVEs: 3

Cskefu is a modestly deployed customer service and engagement platform whose vulnerability profile centers on its core product and recurs through critical application-layer weaknesses including code injection, cross-site scripting, missing authentication for critical functions, and server-side request forgery. These issues reflect typical risks in web-based communication and integration platforms where input handling, authentication boundaries, and external service interaction are central to functionality. Current severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
3
Total CVEs
More Total CVEs than 72% of tracked vendors
1.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 76% of tracked vendors
6.4
Avg CVSS Score
Higher Avg CVSS Score than 38% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Cskefu over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 26, 2022
3 years ago
Most Recent CVE
Feb 16, 2026
158 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (3 CVEs).

3 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2022-36521HIGH
Insecure permissions in cskefu v7.0.1 allows unauthenticated attackers to arbitrarily add administrator accounts.
Aug 26, 20227.526NONO
CVE-2026-2556MEDIUM
A security vulnerability has been detected in cskefu up to 8.0.1. This issue affects some unknown processing of the file com/cskefu/cc/controller/resource/MediaController.java of t
Feb 16, 20266.322NONO
CVE-2026-2557MEDIUM
A vulnerability was detected in cskefu up to 8.0.1. Impacted is the function Upload of the file com/cskefu/cc/controller/resource/MediaController.java of the component File Upload.
Feb 16, 20265.418NONO
View all 3 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products3 CVEs
67%
33%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network3 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low3 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None2 (66.7%)
Unknown0 (0.0%)
Required1 (33.3%)
Privileges Required
Low2 (66.7%)
High0 (0.0%)
None1 (33.3%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (3 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Cskefu.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Cskefu — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Cskefu's Products

View all 2 CNAs →

Top CWEs