Trevor Mckay's vulnerability footprint centers on the Cumin web application, with a durable signal in application-layer input-handling weaknesses including cross-site scripting, cross-site request forgery, and SQL injection. These recurring classes reflect the common risk profile of web-facing applications where input validation and output encoding demand sustained attention. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Trevor Mckay over time
Signals from CVEs in this vendor scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-2684HIGH Multiple SQL injection vulnerabilities in the get_sample_filters_by_signature function in Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2 | Sep 28, 2012 | 7.5 | 22 | NO | NO |
CVE-2012-2734MEDIUM Multiple cross-site request forgery (CSRF) vulnerabilities in Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allow remote attackers t | Sep 28, 2012 | 6.8 | 20 | NO | NO |
CVE-2012-2681MEDIUM Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, uses predictable random numbers to generate session keys, which makes it easier for re | Sep 28, 2012 | 5.8 | 20 | NO | NO |
CVE-2012-2680MEDIUM Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, does not properly restrict access to resources, which allows remote attackers to obtai | Sep 28, 2012 | 5.0 | 19 | NO | NO |
CVE-2012-3459MEDIUM Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allows remote authenticated users to modify Condor attributes and possibly gain privil | Sep 28, 2012 | 4.9 | 18 | NO | NO |
CVE-2012-2735MEDIUM Session fixation vulnerability in Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allows remote attackers to hijack web sessions via a | Sep 28, 2012 | 4.9 | 18 | NO | NO |
CVE-2012-1575MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in Cumin before r5238 allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) widgets or (2) pag | Apr 22, 2012 | 4.3 | 18 | NO | NO |
CVE-2012-2683MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allow remote attackers to injec | Sep 28, 2012 | 4.3 | 17 | NO | NO |
CVE-2012-2685MEDIUM Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allows remote authenticated users to cause a denial of service (memory consumption) vi | Sep 28, 2012 | 4.0 | 16 | NO | NO |
Signals from CVEs in this vendor scope (9 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Trevor Mckay.
Media articles that mention a CVE ID that affects a product developed by Trevor Mckay — matched by CVE ID, not by vendor name.