Kykms is a modestly represented vendor focused on a single key-management and security platform, with observed vulnerabilities centered on application-layer input handling. The recurring weakness classes—cross-site scripting and unrestricted file upload—reflect the risks inherent to web-facing administrative interfaces and warrant attention to input validation and file-type enforcement in the product's design. Current vulnerability counts, severity, and any exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Kykms over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-34909MEDIUM An arbitrary file upload vulnerability in KYKMS v1.0.1 and below allows attackers to execute arbitrary code via uploading a crafted PDF file. | May 15, 2024 | 5.4 | 17 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Kykms.
Media articles that mention a CVE ID that affects a product developed by Kykms — matched by CVE ID, not by vendor name.