Taotesting develops an assessment platform focused on educational and testing services, with its vulnerability footprint centered on web-facing input-handling issues. The recurring exposure reflects the application's handling of user-generated content and web rendering, with demonstrated weakness classes in cross-site scripting and injection-style flaws. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Taotesting over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-36499MEDIUM TAO Open Source Assessment Platform v3.3.0 RC02 was discovered to contain a cross-site scripting (XSS) vulnerability in the content parameter of the Rubric Block (Add) module. This | Oct 22, 2021 | 5.4 | 20 | NO | NO |
CVE-2020-23050HIGH TAO Open Source Assessment Platform v3.3.0 RC02 was discovered to contain a HTML injection vulnerability in the userFirstName parameter of the user account input field. This vulner | Oct 22, 2021 | 8.0 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Taotesting.
Media articles that mention a CVE ID that affects a product developed by Taotesting — matched by CVE ID, not by vendor name.