Replit is a cloud-based collaborative coding platform, with disclosed vulnerabilities centered on its Crosis component and rooted in sensitive information exposure. The narrowly scoped footprint and recurring weakness pattern reflect the platform's architecture as a web-accessible service where data-access controls and secret handling are critical to user isolation. Current vulnerability counts and severity details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Replit over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-21671MEDIUM @replit/crosis is a JavaScript client that speaks Replit's container protocol. A vulnerability that involves exposure of sensitive information exists in versions prior to 7.3.1. Wh | Jan 11, 2022 | 6.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Replit.
Media articles that mention a CVE ID that affects a product developed by Replit — matched by CVE ID, not by vendor name.