Touchbase.Ai Project maintains a focused web application platform where vulnerability exposure centers on input handling and trust-boundary issues, including cross-site scripting, open redirect, and sensitive-information disclosure. The recurring weakness classes reflect common application-layer validation gaps that arise in web-facing services; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Touchbase.Ai Project over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-26218MEDIUM touchbase.ai before version 2.0 is vulnerable to Cross-Site Scripting. The vulnerability allows an attacker to inject HTML payloads which could result in defacement, user redirecti | Nov 11, 2020 | 6.1 | 30 | NO | YES |
CVE-2020-26221MEDIUM touchbase.ai before version 2.0 is vulnerable to Cross-Site Scripting (XSS). The vulnerability allows an attacker to send malicious JavaScript code which could result in hijacking | Nov 11, 2020 | 6.1 | 21 | NO | NO |
CVE-2020-26219MEDIUM touchbase.ai before version 2.0 is vulnerable to Open Redirect. Impacts can be many, and vary from theft of information and credentials, to the redirection to malicious websites co | Nov 11, 2020 | 6.1 | 21 | NO | NO |
toucbase.ai before version 2.0 leaks information by not stripping exif data from images. Anyone with access to the uploaded image of other users could obtain its geolocation, devic | Nov 11, 2020 | 3.5 | 16 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Touchbase.Ai Project.
Media articles that mention a CVE ID that affects a product developed by Touchbase.Ai Project — matched by CVE ID, not by vendor name.