Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Tats

First CVE: Dec 12, 2016Active for: 10 yearsTotal CVEs: 40
32.4
VTI Score
Medium

Tats maintains a focused vulnerability footprint concentrated in w3m, a text-based web browser whose memory-handling demands expose it to recurring weaknesses in buffer management and input validation. The vendor's disclosure portfolio, while modest in product count, recurs through classes characteristic of C-based command-line tools: buffer overflows, out-of-bounds reads and writes, NULL pointer dereferences, and improper input validation. These weakness patterns reflect the parser-oriented and memory-unsafe implementation typical of legacy terminal applications, where untrusted HTML or malformed network input can trigger memory-safety violations. Defenders should treat w3m advisories as applicable to environments where text-based web access is deployed—particularly headless servers, legacy systems, and automation contexts—and prioritize patches for exposed instances. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
40
Total CVEs
More Total CVEs than 98% of tracked vendors
8.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 99% of tracked vendors
6.9
Avg CVSS Score
Higher Avg CVSS Score than 48% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Tats over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 12, 2016
9 years ago
Most Recent CVE
Dec 21, 2023
946 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (40 CVEs).

40 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2022-38223HIGH
There is an out-of-bounds write in checkType located in etc.c in w3m 0.5.3. It can be triggered by sending a crafted HTML file to the w3m binary. It allows an attacker to cause Den
Aug 15, 20227.826NONO
CVE-2018-6197HIGH
w3m through 0.5.3 is prone to a NULL pointer dereference flaw in formUpdateBuffer in form.c.
Jan 25, 20187.526NONO
CVE-2016-9426HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Integer overflow vulnerability in the renderTable function in w3m allows remote attackers to cause a deni
Dec 12, 20168.826NONO
CVE-2016-9425HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a den
Dec 12, 20168.826NONO
CVE-2016-9424HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m doesn't properly validate the value of tag attribute, which allows remote attackers to cause a denial
Dec 12, 20168.826NONO
CVE-2018-6196HIGH
w3m through 0.5.3 is prone to an infinite recursion flaw in HTMLlineproc0 because the feed_table_block_tag function in table.c does not prevent a negative indent value.
Jan 25, 20187.525NONO
CVE-2016-9423HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in w3m allows remote attackers to cause a denial of service (crash) and possib
Dec 12, 20168.824NONO
CVE-2016-9435MEDIUM
The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html f
Jan 20, 20176.523NONO
CVE-2016-9429HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Buffer overflow in the formUpdateBuffer function in w3m allows remote attackers to cause a denial of serv
Dec 12, 20168.823NONO
CVE-2016-9428HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a den
Dec 12, 20168.823NONO
View all 40 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products40 CVEs
75%
25%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local5 (12.5%)
Network35 (87.5%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low39 (97.5%)
High1 (2.5%)
Unknown0 (0.0%)
User Interaction
None3 (7.5%)
Unknown0 (0.0%)
Required37 (92.5%)
Privileges Required
Low1 (2.5%)
High0 (0.0%)
None39 (97.5%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (40 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Tats.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Tats — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Tats's Products

View all 2 CNAs →

Top CWEs