aEnrich
Security Scorecard
Score
36D
Total CVEs
2,501
Patch Rate
38%
959 patched
Avg Response
149d
days to patch
Critical Gaps
43
exploitable, no detection
Severity Breakdown
Critical215
High631
Medium1015
Low29
Patch Status
Patched959 (38%)
Partial/Workaround298 (12%)
Unpatched1244 (50%)
CVEs (2,730)
| CVE ID | Title | Severity | Score | Days | Patch |
|---|---|---|---|---|---|
| CVE-2025-27925 | Nintex Automation Insecure Deserialization | High | 8.5 | - | Patched |
| CVE-2025-1382 | aEnrich HR Admin Token Forgery | Medium | 6.1 | - | Patched |
| CVE-2025-1947 | hzmanyun Education and Training System Remote Command Injection | Medium | 6.3 | - | Patched |
| CVE-2025-1946 | CVE-2025-1946 | Medium | 6.3 | - | Workaround |
| CVE-2024-30150 | aEnrich HR Admin Token Forgery | Medium | 5.3 | - | Workaround |
| CVE-2025-1676 | hzmanyun Education and Training System RCE | Medium | 6.3 | - | Patched |
| CVE-2025-1618 | vTiger CRM Cross-Site Scripting Vulnerability | Medium | 4.3 | - | Patched |
| CVE-2025-20158 | - | Medium | 4.4 | 299d | Unpatched |
| CVE-2025-25196 | OpenFGA Authorization Bypass | Critical | 9.8 | - | Partial |
| CVE-2024-32037 | - | None | 0.0 | - | Workaround |