Forlogic's vulnerability footprint centers on its Qualiex product, a narrowly scoped offering where the observed disclosures reflect authentication and resource-management concerns typical of application-level controls. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Forlogic over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-24030CRITICAL ForLogic Qualiex v1 and v3 has weak token expiration. This allows remote unauthenticated privilege escalation and access to sensitive data via token reuse. NOTE: as of 2025-10-14, | Sep 2, 2020 | 9.8 | 29 | NO | NO |
CVE-2020-24029CRITICAL Because of unauthenticated password changes in ForLogic Qualiex v1 and v3, customer and admin permissions and data can be accessed via a simple request. NOTE: as of 2025-10-14, the | Sep 2, 2020 | 9.8 | 28 | NO | NO |
CVE-2020-24028HIGH ForLogic Qualiex v1 and v3 allows any authenticated customer to achieve privilege escalation via user creations, password changes, or user permission updates. NOTE: as of 2025-10-1 | Sep 2, 2020 | 8.8 | 26 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Forlogic.
Media articles that mention a CVE ID that affects a product developed by Forlogic — matched by CVE ID, not by vendor name.