Glances Project develops a system monitoring and performance-visualization tool that operates across Linux, macOS, and other Unix-like platforms, presenting a narrow but specialized attack surface in the systems-administration software space. The observed vulnerability signal centers on XML parsing, specifically improper handling of external entity references that can arise in configuration or data-processing contexts. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Glances Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-23418CRITICAL The package glances before 3.2.1 are vulnerable to XML External Entity (XXE) Injection via the use of Fault to parse untrusted XML data, which is known to be vulnerable to XML atta | Jul 29, 2021 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Glances Project.
Media articles that mention a CVE ID that affects a product developed by Glances Project — matched by CVE ID, not by vendor name.