Thinkst develops deception and threat-intelligence tooling centered on Canary Tokens and OpenCanary, products designed to detect unauthorized access and lateral movement through honeypot mechanisms and controlled credential traps. Its modest vulnerability footprint reflects application-layer exposure patterns typical of web-based security tools, with observed weaknesses clustering around input handling (cross-site scripting and CSV formula injection) and authorization boundary enforcement. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Thinkst over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-9768HIGH Thinkst Canarytokens through commit hash 4e89ee0 (2019-03-01) relies on limited variation in size, metadata, and timestamp, which makes it easier for attackers to estimate whether | Mar 14, 2019 | 7.5 | 33 | NO | YES |
CVE-2024-48911HIGH OpenCanary, a multi-protocol network honeypot, directly executed commands taken from its config file. Prior to version 0.9.4, where the config file is stored in an unprivileged use | Oct 14, 2024 | 7.8 | 23 | NO | NO |
CVE-2023-22475MEDIUM Canarytokens is an open source tool which helps track activity and actions on your network. A Cross-Site Scripting vulnerability was identified in the history page of triggered Can | Jan 6, 2023 | 6.1 | 22 | NO | NO |
CVE-2022-31113MEDIUM Canarytokens is an open source tool which helps track activity and actions on your network. A Cross-Site Scripting vulnerability was identified in the history page of triggered Can | Jul 1, 2022 | 6.1 | 21 | NO | NO |
CVE-2024-28111MEDIUM Canarytokens helps track activity and actions on a network. Canarytokens.org supports exporting the history of a Canarytoken's incidents in CSV format. The generation of these CSV | Mar 6, 2024 | 6.5 | 18 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Thinkst.
Media articles that mention a CVE ID that affects a product developed by Thinkst — matched by CVE ID, not by vendor name.