Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Thalesgroup

First CVE: Oct 3, 2019Active for: 7 yearsTotal CVEs: 17
14.3
VTI Score
Low

Thalesgroup's vulnerability profile centers on a focused set of security and licensing products including authentication clients, key management appliances, and protection installers that serve enterprise and regulated environments. The recurring exposure pattern involves privilege-management and access-control weaknesses alongside path-traversal and dynamic-code-handling issues, reflecting the sensitive operations these products perform around credential storage, license enforcement, and software integrity. Current exploitation and severity counts are shown alongside this summary.

FAUCET AI Generated
17
Total CVEs
More Total CVEs than 95% of tracked vendors
0.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 1% of tracked vendors
7.0
Avg CVSS Score
Higher Avg CVSS Score than 49% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Thalesgroup over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 3, 2019
6 years ago
Most Recent CVE
May 7, 2026
78 days ago

Products(30 total)

Top CVEs

Signals from CVEs in this vendor scope (17 CVEs).

17 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2021-32928CRITICAL
The Sentinel LDK Run-Time Environment installer (Versions 7.6 and prior) adds a firewall rule named “Sentinel License Manager” that allows incoming connections from private network
Jun 16, 20219.828NONO
CVE-2026-6805HIGH
Vulnerability on the external sharing feature in Cryptobox allows an attacker knowing a sharing link URL to retrieve information from the server allowing an offline brute-force att
May 7, 20267.527NONO
CVE-2023-5993HIGH
A flaw in the Windows Installer in Thales SafeNet Authentication Client prior to 10.8 R10 on Windows allows an attacker to escalate their privilege level via local access.
Feb 27, 20247.825NONO
CVE-2021-42810HIGH
A flaw in the previous versions of the product may allow an authenticated attacker the ability to execute code as a privileged user on a system where the agent is installed.
Jan 19, 20227.825NONO
CVE-2021-42809HIGH
Improper Access Control of Dynamically-Managed Code Resources (DLL) in Thales Sentinel Protection Installer could allow the execution of arbitrary code.
Dec 20, 20217.824NONO
CVE-2021-28979MEDIUM
SafeNet KeySecure Management Console 8.12.0 is vulnerable to HTTP response splitting attacks. A remote attacker could exploit this vulnerability using specially-crafted URL to caus
Jun 16, 20216.524NONO
CVE-2024-0197HIGH
A flaw in the installer for Thales SafeNet Sentinel HASP LDK prior to 9.16 on Windows allows an attacker to escalate their privilege level via local access.
Feb 27, 20247.823NONO
CVE-2023-7016HIGH
A flaw in Thales SafeNet Authentication Client prior to 10.8 R10 on Windows allows an attacker to execute code at a SYSTEM level via local access.
Feb 27, 20247.822NONO
CVE-2021-42056MEDIUM
Thales Safenet Authentication Client (SAC) for Linux and Windows through 10.7.7 creates insecure temporary hid and lock files allowing a local attacker, through a symlink attack, t
Jun 24, 20226.722NONO
CVE-2021-42811MEDIUM
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in SafeNet KeySecure allows an authenticated user to read arbitrary files from the unde
Jun 10, 20226.522NONO
View all 17 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products17 CVEs
59%
35%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local9 (52.9%)
Network7 (41.2%)
Unknown0 (0.0%)
Physical1 (5.9%)
Adjacent Network0 (0.0%)
Attack Complexity
Low16 (94.1%)
High1 (5.9%)
Unknown0 (0.0%)
User Interaction
None14 (82.4%)
Unknown0 (0.0%)
Required3 (17.6%)
Privileges Required
Low8 (47.1%)
High3 (17.6%)
None6 (35.3%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (17 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Thalesgroup.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Thalesgroup — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Thalesgroup's Products

View all 3 CNAs →

Top CWEs