Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Pixelimity

First CVE: Dec 6, 2018Active for: 8 yearsTotal CVEs: 7

Pixelimity maintains a focused web application product with a durable vulnerability profile centered on input-handling and request-validation weaknesses such as cross-site scripting, SQL injection, cross-site request forgery, and downstream injection flaws that are characteristic of web-application attack surfaces. Vulnerabilities affecting this vendor skew toward serious outcomes and frequently acquire public exploit code, reflecting the accessibility and straightforward nature of these weakness classes. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
7
Total CVEs
More Total CVEs than 88% of tracked vendors
1.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 79% of tracked vendors
6.1
Avg CVSS Score
Higher Avg CVSS Score than 35% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Pixelimity over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 6, 2018
7 years ago
Most Recent CVE
May 26, 2025
424 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (7 CVEs).

7 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2022-28590HIGH
A Remote Code Execution (RCE) vulnerability exists in Pixelimity 1.0 via admin/admin-ajax.php?action=install_theme.
May 3, 20227.234NONO
CVE-2020-23522MEDIUM
Pixelimity 1.0 has cross-site request forgery via the admin/setting.php data [Password] parameter.
Jan 19, 20216.832NOYES
CVE-2025-5206CRITICAL
A vulnerability classified as critical was found in Pixelimity 1.0. Affected by this vulnerability is an unknown functionality of the file /install/index.php of the component Insta
May 26, 20259.825NONO
CVE-2021-42866MEDIUM
A Cross Site Scripting vulnerabilty exists in Pixelimity 1.0 via the Site Description field in pixelimity/admin/setting.php
Mar 31, 20224.819NONO
CVE-2022-28589MEDIUM
A stored cross-site scripting (XSS) vulnerability in Pixelimity 1.0 allows attackers to execute arbitrary web scripts or HTML via the Title field in admin/pages.php?action=add_new
May 3, 20224.818NONO
CVE-2021-29056MEDIUM
Cross Site Scripting (XSS) vulnerability exists in Pixelimity 1.0 via the HTTP POST parameter to admin/setting.php.
Aug 17, 20214.818NONO
CVE-2018-19919MEDIUM
Pixelimity 1.0 has Persistent XSS via the admin/portfolio.php data[title] parameter, as demonstrated by a crafted onload attribute of an SVG element.
Dec 6, 20184.818NONO
View all 7 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products7 CVEs
71%
14%
14%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network7 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None2 (28.6%)
Unknown0 (0.0%)
Required5 (71.4%)
Privileges Required
Low0 (0.0%)
High6 (85.7%)
None1 (14.3%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (7 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
14.3% of CVEs· 77th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Pixelimity.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Pixelimity — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Pixelimity's Products

View all 2 CNAs →

Top CWEs