aEnrich

Security Scorecard

Score

36D

Total CVEs

2,501

Patch Rate

38%

959 patched

Avg Response

149d

days to patch

Critical Gaps

43

exploitable, no detection

Severity Breakdown

Critical215
High631
Medium1015
Low29

Patch Status

Patched959 (38%)
Partial/Workaround298 (12%)
Unpatched1244 (50%)

CVEs (2,730)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-36927Tachyon Server Remote Privilege EscalationHigh7.8-Workaround
CVE-2024-58304aEnrich HR Admin Token ForgeryHigh7.5-Workaround
CVE-2024-58309SQL Injection in xbtitFM 4.1.18Critical9.820dUnpatched
CVE-2024-58313xbtitFM Insecure File Upload VulnerabilityHigh7.220dUnpatched
CVE-2025-36922aEnrich HR Token ForgeryMedium6.7-Patched
CVE-2025-66451LibreChat Prompt Group VulnerabilityMedium6.5-Patched
CVE-2025-14518PowerJob Server-Side Request Forgery VulnerabilityMedium6.3-Patched
CVE-2025-14522Webray PHP-based Travel Website CMS File Upload VulnerabilityMedium6.3-Workaround
CVE-2025-66452LibreChat XSS RiskMedium6.1-Patched
CVE-2025-34504KodExplorer Open Redirect VulnerabilityMedium6.1-Patched