Transifex is a localization and translation-management platform serving software projects and development teams, with its vulnerability footprint concentrated in the core platform product. Observed exposures center on improper input validation, reflecting the application's web-facing role in processing and serving translated content; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Transifex over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-7110MEDIUM Transifex command-line client before 0.10 does not validate X.509 certificates for data transfer connections, which allows man-in-the-middle attackers to spoof a Transifex server v | May 2, 2014 | 4.3 | 18 | NO | NO |
CVE-2013-2073MEDIUM Transifex command-line client before 0.9 does not validate X.509 certificates, which allows man-in-the-middle attackers to spoof a Transifex server via an arbitrary certificate. | May 2, 2014 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Transifex.
Media articles that mention a CVE ID that affects a product developed by Transifex — matched by CVE ID, not by vendor name.