Xmind is a mind-mapping and diagramming application with a narrow, focused product footprint. The observed vulnerabilities cluster around general weakness classifications rather than a specific technical pattern, reflecting the application's relatively contained attack surface. Current severity, exploitation status, and detailed exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Xmind over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-2680HIGH The update process in Xmind 3.4.1 and earlier allow remote attackers to execute arbitrary code via a man-in-the-middle attack. | Jan 21, 2020 | 8.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Xmind.
Media articles that mention a CVE ID that affects a product developed by Xmind — matched by CVE ID, not by vendor name.