Ricardoboss maintains a narrowly scoped product portfolio centered on Pubnet, a network or connectivity-focused application that has disclosed vulnerabilities concentrated in authentication and authorization mechanisms. The recurring weakness classes—missing authentication for critical functions and missing authorization—suggest access-control gaps that expose sensitive operations to unauthenticated or insufficiently privileged actors. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ricardoboss over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-65112CRITICAL PubNet is a self-hosted Dart & Flutter package service. Prior to version 1.1.3, the /api/storage/upload endpoint in PubNet allows unauthenticated users to upload packages as any us | Nov 29, 2025 | 9.8 | 34 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ricardoboss.
Media articles that mention a CVE ID that affects a product developed by Ricardoboss — matched by CVE ID, not by vendor name.