Xfinity's vulnerability footprint centers on web-based service delivery platforms such as Comcast's defined-technologies microservices, with the observed signal concentrated in input-validation issues characteristic of application-layer attack surfaces. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Xfinity over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-45938CRITICAL An issue was discovered in Comcast Defined Technologies microeisbss through 2021. An attacker can inject a stored XSS payload in the Device ID field under Inventory Management to a | Jun 2, 2023 | 9.0 | 52 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Xfinity.
Media articles that mention a CVE ID that affects a product developed by Xfinity — matched by CVE ID, not by vendor name.