Emoncms is an open-source energy monitoring and visualization platform, with a modestly scoped vulnerability profile concentrated in the core product itself. Observed weaknesses center on resource exposure and observable discrepancies, reflecting typical application-layer issues in systems handling sensor data and user access controls; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Emoncms over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-33518MEDIUM emoncms v11 and later was discovered to contain an information disclosure vulnerability which allows attackers to obtain the web directory path and other information leaked by the | Jun 5, 2023 | 5.3 | 17 | NO | NO |
CVE-2016-7813MEDIUM Cross-site scripting vulnerability in DERAEMON-CMS version 0.8.9 and earlier allows remote attackers to inject arbitrary web script or HTML via the parameters hostname, database an | Jun 9, 2017 | 6.1 | 17 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Emoncms.
Media articles that mention a CVE ID that affects a product developed by Emoncms — matched by CVE ID, not by vendor name.