The number and severity of CVEs published that impact products developed by Steipete over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-45242HIGH Summarize prior to 0.15.1 contains a path traversal vulnerability in the /v1/summarize daemon endpoint that allows authenticated callers to write files to arbitrary directories by | May 18, 2026 | 7.1 | 31 | NO | NO |
CVE-2026-45245HIGH Summarize prior to 0.15.1 contains a vulnerability in the hover summary feature that allows malicious pages to dispatch synthetic mouseover events over attacker-controlled links, c | May 18, 2026 | 7.4 | 31 | NO | NO |
CVE-2026-45243MEDIUM Summarize prior to 0.15.1 contains a missing authorization vulnerability in the content script window.postMessage bridge that allows malicious pages to perform unauthorized operati | May 18, 2026 | 6.1 | 28 | NO | NO |
CVE-2026-45246MEDIUM Summarize prior to 0.15.1 contains an insecure file permission vulnerability in the refresh-free configuration rewrite path that allows local users to read sensitive credentials by | May 18, 2026 | 5.5 | 27 | NO | NO |
CVE-2026-45244MEDIUM Summarize prior to 0.15.1 contains a missing authorization vulnerability that allows attackers to execute browser automation actions without per-call user approval when the extensi | May 18, 2026 | 5.4 | 27 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Steipete.
Media articles that mention a CVE ID that affects a product developed by Steipete — matched by CVE ID, not by vendor name.