Edgenexus develops application delivery controller products that sit in the network path between clients and backend services, handling request routing and protocol management at scale. The vendor's observed vulnerability profile centers on input-handling and access-control weaknesses, including cross-site request forgery and OS command injection, that are characteristic of web-facing infrastructure software exposed to untrusted network traffic. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Edgenexus over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-37718HIGH The management portal component of JetNexus/EdgeNexus ADC 4.2.8 was discovered to contain a command injection vulnerability. This vulnerability allows authenticated attackers to ex | Jan 23, 2023 | 8.8 | 29 | NO | NO |
CVE-2022-37719HIGH A Cross-Site Request Forgery (CSRF) in the management portal of JetNexus/EdgeNexus ADC 4.2.8 allows attackers to escalate privileges and execute arbitrary code via unspecified vect | Jan 23, 2023 | 8.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Edgenexus.
Media articles that mention a CVE ID that affects a product developed by Edgenexus — matched by CVE ID, not by vendor name.