Parsecgaming's vulnerability footprint centers on its Parsec remote-access and cloud-gaming platform, a niche product in the remote-work and streaming space that has attracted modest disclosure volume. The recurring weakness classes—cross-site request forgery and insufficient session expiration—reflect common risks in web-based session management and represent the attack surface inherent to a client-server gaming and desktop-access application. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Parsecgaming over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-6634CRITICAL A vulnerability in Parsec Windows 142-0 and Parsec 'Linux Ubuntu 16.04 LTS Desktop' Build 142-1 allows unauthorized users to maintain access to an account. | May 7, 2019 | 9.8 | 30 | NO | NO |
CVE-2018-6651HIGH In the uncurl_ws_accept function in uncurl.c in uncurl before 0.07, as used in Parsec before 140-3, insufficient Origin header validation (accepting an arbitrary substring match) f | Feb 5, 2018 | 8.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Parsecgaming.
Media articles that mention a CVE ID that affects a product developed by Parsecgaming — matched by CVE ID, not by vendor name.