Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Objective Development Software GmbH

First CVE: Nov 15, 2016Active for: 10 yearsTotal CVEs: 5

Objective Development Software GmbH produces Little Snitch, a macOS application that monitors and controls network traffic at the system level, presenting a narrow but privileged attack surface centered on process monitoring and network policy enforcement. Its disclosures cluster around local privilege escalation and memory-safety issues, including symlink-following conditions, buffer-boundary violations, and incomplete state cleanup, reflecting the kernel-adjacent role of network-filtering software. Current severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
5
Total CVEs
More Total CVEs than 83% of tracked vendors
1.3
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 74% of tracked vendors
7.2
Avg CVSS Score
Higher Avg CVSS Score than 53% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Objective Development Software GmbH over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 15, 2016
9 years ago
Most Recent CVE
Jun 30, 2020
2,215 days ago

Self-Reporting Analysis

Of all the CVEs published by Objective Development Software GmbH as a CNA, 83.3% affect products that Objective Development Software GmbH develops as a vendor.

83.3%
16.7%
Self-reported: 5 (83.3%)
Third-party: 1 (16.7%)

Of all the CVEs published that affect products developed by Objective Development Software GmbH, 100.0% are self-published by Objective Development Software GmbH as a CNA.

100.0%
Self-published: 5 (100.0%)
Other CNAs: 0 (0.0%)

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (5 CVEs).

5 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2020-13095HIGH
Little Snitch version 4.5.1 and older changed ownership of a directory path controlled by the user. This allowed the user to escalate to root by linking the path to a directory con
Jun 30, 20208.828NONO
CVE-2016-8661HIGH
Little Snitch version 3.0 through 3.6.1 suffer from a buffer overflow vulnerability that could be locally exploited which could lead to an escalation of privileges (EoP) and unauth
Nov 15, 20168.427NONO
CVE-2017-2675HIGH
Little Snitch version 3.0 through 3.7.3 suffer from a local privilege escalation vulnerability in the installer part. The vulnerability is related to the installation of the config
Apr 6, 20177.824NONO
CVE-2019-13013MEDIUM
Little Snitch versions 4.3.0 to 4.3.2 have a local privilege escalation vulnerability in their privileged helper tool. The privileged helper tool implements an XPC interface which
Aug 23, 20195.521NONO
CVE-2019-13014MEDIUM
Little Snitch versions 4.4.0 fixes a vulnerability in a privileged helper tool. However, the operating system may have made a copy of the privileged helper which is not removed or
Aug 23, 20195.519NONO
View all 5 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products5 CVEs
40%
60%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local4 (80.0%)
Network1 (20.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low5 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None5 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low4 (80.0%)
High0 (0.0%)
None1 (20.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (5 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Objective Development Software GmbH.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Objective Development Software GmbH — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Objective Development Software GmbH's Products

View all 1 CNAs →

Top CWEs