Druide maintains a narrowly focused product portfolio centered on the Antidote application, a specialized educational or content-delivery tool. The observed vulnerability signal reflects application-layer information-handling weaknesses, particularly cleartext transmission of sensitive data, which is characteristic of systems that handle user credentials or protected content without adequate encryption. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Druide over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-13140HIGH Druide Antidote through 9.5.1 on Windows and Linux allows remote code execution through the update mechanism by leveraging use of HTTP to download installation packages. | Sep 24, 2018 | 8.1 | 29 | NO | NO |
CVE-2019-9565CRITICAL Druide Antidote RX, HD, 8 before 8.05.2287, 9 before 9.5.3937 and 10 before 10.1.2147 allows remote attackers to steal NTLM hashes or perform SMB relay attacks upon a direct launch | Mar 4, 2019 | 9.1 | 23 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Druide.
Media articles that mention a CVE ID that affects a product developed by Druide — matched by CVE ID, not by vendor name.