Karim Ratib's disclosures center on a small set of web-based tools and modules, including Views Bulk Operations and Zoomify, where the durable signal involves application-layer input-handling issues such as cross-site scripting. Current severity, exploitation, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Karim Ratib over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-2237HIGH Unspecified vulnerability in Views Bulk Operations 5.x-1.x before 5.x-1.4 and 6.x-1.x before 6.x-1.7, a module for Drupal, allows remote attackers to bypass intended access restric | Jun 27, 2009 | 7.5 | 22 | NO | NO |
CVE-2010-5277MEDIUM Unspecified vulnerability in the Views Bulk Operations module 6 before 6.x-1.10 for Drupal allows remote authenticated users with user management permissions to bypass intended acc | Oct 7, 2012 | 4.9 | 17 | NO | NO |
CVE-2009-3918MEDIUM Cross-site scripting (XSS) vulnerability in the Zoomify module 5.x before 5.x-2.2 and 6.x before 6.x-1.4, a module for Drupal, allows remote attackers to inject arbitrary web scrip | Nov 9, 2009 | 4.3 | 16 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Karim Ratib.
Media articles that mention a CVE ID that affects a product developed by Karim Ratib — matched by CVE ID, not by vendor name.