Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Frenify

First CVE: Dec 13, 2021Active for: 5 yearsTotal CVEs: 15
15.9
VTI Score
Low

Frenify maintains a focused portfolio of web-facing applications, including Categorify and Mediamatic, that serve as categorization and media-management tools with notable deployment reach in their respective verticals. The recurring vulnerability signal centers on application-layer flaws including cross-site request forgery, missing authorization checks, and SQL injection—weaknesses typical of web applications where input handling and access control are critical. Current severity, exploitation status, and exposure counts are shown alongside this summary.

FAUCET AI Generated
15
Total CVEs
More Total CVEs than 94% of tracked vendors
1.9
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 80% of tracked vendors
4.9
Avg CVSS Score
Higher Avg CVSS Score than 10% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Frenify over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 13, 2021
4 years ago
Most Recent CVE
Sep 9, 2025
318 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (15 CVEs).

15 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2021-24848HIGH
The mediamaticAjaxRenameCategory AJAX action of the Mediamatic WordPress plugin before 2.8.1, available to any authenticated user, does not sanitise the categoryID parameter before
Dec 13, 20218.827NONO
CVE-2022-47144HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Plugincraft Mediamatic – Media Library Folders plugin <= 2.8.1 versions.
May 25, 20238.825NONO
CVE-2023-0294MEDIUM
The Mediamatic – Media Library Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.8.1. This is due to missing or incorrect
Jan 13, 20234.318NONO
CVE-2025-59005MEDIUM
Missing Authorization vulnerability in frenify Categorify categorify allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Categorify: from n/a
Sep 9, 20254.317NONO
CVE-2024-1650MEDIUM
The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the categorifyAjaxRenameCategory function in all version
Feb 27, 20244.317NONO
CVE-2024-1910MEDIUM
The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.7.4. This is due to missing or incorrect nonce validation
Feb 27, 20244.316NONO
CVE-2024-1906MEDIUM
The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.7.4. This is due to missing or incorrect nonce validation
Feb 27, 20244.316NONO
CVE-2024-0385MEDIUM
The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the categorifyAjaxAddCategory function in all versions u
Mar 13, 20244.315NONO
CVE-2024-1912MEDIUM
The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.7.4. This is due to missing or incorrect nonce validation
Feb 27, 20244.315NONO
CVE-2024-1909MEDIUM
The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.7.4. This is due to missing or incorrect nonce validation
Feb 27, 20244.315NONO
View all 15 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products15 CVEs
87%
13%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network15 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low15 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None8 (53.3%)
Unknown0 (0.0%)
Required7 (46.7%)
Privileges Required
Low8 (53.3%)
High0 (0.0%)
None7 (46.7%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (15 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Frenify.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Frenify — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Frenify's Products

View all 3 CNAs →

Top CWEs