aEnrich
Security Scorecard
Score
36D
Total CVEs
2,501
Patch Rate
38%
959 patched
Avg Response
149d
days to patch
Critical Gaps
43
exploitable, no detection
Severity Breakdown
Critical215
High631
Medium1015
Low29
Patch Status
Patched959 (38%)
Partial/Workaround298 (12%)
Unpatched1244 (50%)
CVEs (2,730)
| CVE ID | Title | Severity | Score | Days | Patch |
|---|---|---|---|---|---|
| CVE-2025-36927 | Tachyon Server Remote Privilege Escalation | High | 7.8 | - | Workaround |
| CVE-2024-58304 | aEnrich HR Admin Token Forgery | High | 7.5 | - | Workaround |
| CVE-2024-58309 | SQL Injection in xbtitFM 4.1.18 | Critical | 9.8 | 20d | Unpatched |
| CVE-2024-58313 | xbtitFM Insecure File Upload Vulnerability | High | 7.2 | 20d | Unpatched |
| CVE-2025-36922 | aEnrich HR Token Forgery | Medium | 6.7 | - | Patched |
| CVE-2025-66451 | LibreChat Prompt Group Vulnerability | Medium | 6.5 | - | Patched |
| CVE-2025-14518 | PowerJob Server-Side Request Forgery Vulnerability | Medium | 6.3 | - | Patched |
| CVE-2025-14522 | Webray PHP-based Travel Website CMS File Upload Vulnerability | Medium | 6.3 | - | Workaround |
| CVE-2025-66452 | LibreChat XSS Risk | Medium | 6.1 | - | Patched |
| CVE-2025-34504 | KodExplorer Open Redirect Vulnerability | Medium | 6.1 | - | Patched |