Davidguva's vulnerability footprint centers on the OpenVidReview product, a modestly represented offering with a durable pattern of application-layer input-handling and access-control issues, specifically cross-site scripting and improper default permission assignments. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Davidguva over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-46054CRITICAL OpenVidReview 1.0 is vulnerable to Incorrect Access Control. The /upload route is accessible without authentication, allowing any user to upload files. | Nov 27, 2024 | 9.8 | 24 | NO | NO |
CVE-2024-46055MEDIUM OpenVidReview 1.0 is vulnerable to Cross Site Scripting (XSS) in review names. | Nov 27, 2024 | 4.8 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Davidguva.
Media articles that mention a CVE ID that affects a product developed by Davidguva — matched by CVE ID, not by vendor name.