Shaneisrael develops a file-sharing application, Fireshare, that exhibits a pattern of input-handling and access-control weaknesses including path traversal, command injection, SQL injection, and improper file-name control. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Shaneisrael over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-34745CRITICAL Fireshare facilitates self-hosted media and link sharing. Prior to version 1.5.3, the fix for CVE-2026-33645 was applied to the authenticated /api/uploadChunked endpoint but was no | Apr 2, 2026 | 9.1 | 34 | NO | NO |
CVE-2025-67728CRITICAL Fireshare facilitates self-hosted media and link sharing. Versions 1.2.30 and below allow an authenticated user, or unauthenticated user if the Public Uploads setting is enabled, t | Dec 12, 2025 | 9.8 | 33 | NO | NO |
CVE-2026-33645HIGH Fireshare facilitates self-hosted media and link sharing. In version 1.5.1, an authenticated path traversal vulnerability in Fireshare’s chunked upload endpoint allows an attacker | Mar 26, 2026 | 8.1 | 28 | NO | NO |
CVE-2025-55476MEDIUM FireShare FileShare 1.2.25 contains a time-based blind SQL injection vulnerability in the sort parameter of the endpoint: GET /api/videos/public?sort= This parameter is unsafely ev | Sep 2, 2025 | 6.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Shaneisrael.
Media articles that mention a CVE ID that affects a product developed by Shaneisrael — matched by CVE ID, not by vendor name.