Qtiworks Project maintains QTIWorks, a specialized assessment and test delivery platform built around the QTI (Question and Test Interoperability) standard, with a narrowly scoped vulnerability footprint. The recurring exposure centers on path-traversal conditions in file-handling and resource-access logic, a characteristic risk in assessment platforms that process and serve user-supplied test materials and content archives. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Qtiworks Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-39367MEDIUM QTIWorks is a software suite for standards-based assessment delivery. Prior to version 1.0-beta15, the QTIWorks Engine allows users to upload QTI content packages as ZIP files. The | Oct 28, 2022 | 6.5 | 17 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Qtiworks Project.
Media articles that mention a CVE ID that affects a product developed by Qtiworks Project — matched by CVE ID, not by vendor name.