Thebuggenie operates The Bug Genie, a web-based issue-tracking and project-management platform, with observed vulnerabilities clustering around sensitive-information disclosure and cross-site scripting in web-page generation. These weakness classes reflect the platform's role as a data-collection and web-interface system where input handling and output encoding are critical to protecting project data from unauthorized access or manipulation. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Thebuggenie over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-1760MEDIUM The Bug Genie before 3.2.6 has Multiple XSS and HTML Injection Vulnerabilities | Feb 11, 2020 | 6.1 | 17 | NO | NO |
CVE-2011-3808MEDIUM The Bug Genie 2.1.2 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonst | Sep 24, 2011 | 5.0 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Thebuggenie.
Media articles that mention a CVE ID that affects a product developed by Thebuggenie — matched by CVE ID, not by vendor name.