Dnkorpushov maintains a focused product line centered on eBook metadata handling tools, where the durable vulnerability signal reflects XML parsing and processing demands. The recurring exposure traces to improper restrictions on XML external entity references, a weakness class characteristic of applications that consume or transform structured document formats. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Dnkorpushov over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-37388CRITICAL An XML External Entity (XXE) vulnerability in the ebookmeta.get_metadata function of lxml before v4.9.1 allows attackers to access sensitive information or cause a Denial of Servic | Jun 7, 2024 | 9.1 | 28 | NO | NO |
CVE-2024-36827HIGH An XML External Entity (XXE) vulnerability in the ebookmeta.get_metadata function of ebookmeta before v1.2.8 allows attackers to access sensitive information or cause a Denial of S | Jun 7, 2024 | 7.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Dnkorpushov.
Media articles that mention a CVE ID that affects a product developed by Dnkorpushov — matched by CVE ID, not by vendor name.