Vivaldi is a niche web browser with a compact product footprint centered on its Windows installer component. The observed vulnerability signal reflects an untrusted search-path weakness typical of installer implementations, where improper directory handling during execution can enable local code execution. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Vivaldi over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-2156HIGH Untrusted search path vulnerability in Vivaldi installer for Windows prior to version 1.7.735.48 allows an attacker to execute arbitrary code via a specially crafted executable fil | Apr 28, 2017 | 7.8 | 20 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Vivaldi.
Media articles that mention a CVE ID that affects a product developed by Vivaldi — matched by CVE ID, not by vendor name.