Jsbroks develops Coco Annotator, a data-annotation tool for machine-learning workflows, with observed vulnerabilities clustering around access-control and resource-management issues including improper authorization, incorrect privilege assignment, and predictable state generation. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Jsbroks over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-2109HIGH A vulnerability was identified in jsbroks COCO Annotator up to 0.11.1. Affected is an unknown function of the file /api/undo/ of the component Delete Category Handler. Such manipul | Feb 7, 2026 | 8.1 | 25 | NO | NO |
CVE-2026-2108HIGH A vulnerability was determined in jsbroks COCO Annotator up to 0.11.1. This impacts an unknown function of the file /api/info/long_task of the component Endpoint. This manipulation | Feb 7, 2026 | 7.5 | 24 | NO | NO |
CVE-2024-10141HIGH A vulnerability, which was classified as problematic, was found in jsbroks COCO Annotator 0.11.1. This affects an unknown part of the component Session Handler. The manipulation of | Oct 19, 2024 | 8.1 | 22 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Jsbroks.
Media articles that mention a CVE ID that affects a product developed by Jsbroks — matched by CVE ID, not by vendor name.