aEnrich

Security Scorecard

Score

36D

Total CVEs

2,501

Patch Rate

38%

959 patched

Avg Response

149d

days to patch

Critical Gaps

43

exploitable, no detection

Severity Breakdown

Critical215
High631
Medium1015
Low29

Patch Status

Patched959 (38%)
Partial/Workaround298 (12%)
Unpatched1244 (50%)

CVEs (2,726)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-63388Dify v1.9.1 CORS Misconfiguration VulnerabilityCritical9.1-Patched
CVE-2025-63389Ollama API BypassCritical9.8-Patched
CVE-2023-53905ProjectSend CSV Injection VulnerabilityHigh8.8-Patched
CVE-2023-53906ProjectSend Stored Cross-Site Scripting VulnerabilityMedium4.6-Patched
CVE-2023-53930ProjectSend Insecure Direct Object ReferenceCritical9.8-Patched
CVE-2023-53913Rukovoditel CSV Injection VulnerabilityHigh8.8-Workaround
CVE-2023-53907Bludit Authenticated Arbitrary File DownloadMedium6.5-Patched
CVE-2023-53917Affiliate Me SQL InjectionMedium6.5-Workaround
CVE-2023-53931Revive Adserver XSSMedium5.4-Patched
CVE-2023-53909CVE-2023-53909Medium5.4-Workaround