Ctfer produces a focused line of security assessment and monitoring tools, with observed vulnerabilities centered on access control and path-traversal weaknesses affecting its fullchain and monitoring product offerings. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ctfer over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-32769CRITICAL Fullchain is an umbrella project for deploying a ready-to-use CTF platform. In versions prior to 0.1.1, due to a mis-written NetworkPolicy, a malicious actor can pivot from a subv | Mar 20, 2026 | 9.8 | 35 | NO | NO |
CVE-2026-32771CRITICAL The CTFer.io Monitoring component is in charge of the collection, process and storage of various signals (i.e. logs, metrics and distributed traces). In versions prior to 0.2.2, th | Mar 20, 2026 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ctfer.
Media articles that mention a CVE ID that affects a product developed by Ctfer — matched by CVE ID, not by vendor name.