Widoco is a documentation-generation tool that converts ontology and schema descriptions into human-readable web-based documentation, with vulnerability exposure centered in its core product. The recurring weakness class affecting this vendor involves path-traversal conditions that can arise in file-handling and resource-path operations during documentation generation workflows. Current exploitation activity and severity figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Widoco Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-4772HIGH A vulnerability was found in Widoco and classified as critical. Affected by this issue is the function unZipIt of the file src/main/java/widoco/WidocoUtils.java. The manipulation l | Dec 27, 2022 | 7.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Widoco Project.
Media articles that mention a CVE ID that affects a product developed by Widoco Project — matched by CVE ID, not by vendor name.