Quiter's vulnerability profile centers on its Gateway product and skews strongly toward critical-severity outcomes across a narrow but strategically important footprint. The recurring exposure reflects web-application and data-handling weaknesses—SQL injection, cross-site scripting, and sensitive information disclosure in error messages—characteristic of web-facing authentication and access-control systems. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Quiter over time
Signals from CVEs in this vendor scope (11 CVEs).
11 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-40716CRITICAL SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases through t | Jul 8, 2025 | 9.8 | 30 | NO | NO |
CVE-2025-40715CRITICAL SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases through t | Jul 8, 2025 | 9.8 | 29 | NO | NO |
CVE-2025-40711CRITICAL SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases through t | Jul 8, 2025 | 9.8 | 29 | NO | NO |
CVE-2025-40712CRITICAL SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases through t | Jul 8, 2025 | 9.8 | 26 | NO | NO |
CVE-2025-40717CRITICAL SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases through t | Jul 8, 2025 | 9.8 | 24 | NO | NO |
CVE-2025-40714CRITICAL SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases through t | Jul 8, 2025 | 9.8 | 24 | NO | NO |
CVE-2025-40713CRITICAL SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases through t | Jul 8, 2025 | 9.8 | 24 | NO | NO |
CVE-2025-40718HIGH Improper error handling vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to send malformed payloads to generate error mes | Jul 8, 2025 | 7.5 | 19 | NO | NO |
CVE-2025-40720MEDIUM Reflected Cross-site Scripting (XSS) vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to execute JavaScript code in the v | Jul 8, 2025 | 6.1 | 18 | NO | NO |
CVE-2025-40719MEDIUM Reflected Cross-site Scripting (XSS) vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to execute JavaScript code in the v | Jul 8, 2025 | 6.1 | 18 | NO | NO |
Signals from CVEs in this vendor scope (11 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Quiter.
Media articles that mention a CVE ID that affects a product developed by Quiter — matched by CVE ID, not by vendor name.