Firegiant develops the WiX Toolset, a software installer and deployment framework that operates deep in the build and packaging layer of Windows applications. The vendor's vulnerability profile centers on path-traversal and untrusted search-path issues, which are characteristic of tools that resolve file system and registry paths during installation and patching workflows. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Firegiant over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-24810HIGH WiX toolset lets developers create installers for Windows Installer, the Windows installation engine. The .be TEMP folder is vulnerable to DLL redirection attacks that allow the at | Feb 7, 2024 | 7.8 | 22 | NO | NO |
CVE-2019-16511MEDIUM An issue was discovered in DTF in FireGiant WiX Toolset before 3.11.2. Microsoft.Deployment.Compression.Cab.dll and Microsoft.Deployment.Compression.Zip.dll allow directory travers | Sep 19, 2019 | 5.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Firegiant.
Media articles that mention a CVE ID that affects a product developed by Firegiant — matched by CVE ID, not by vendor name.