Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 28 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2025-49846 wire-ios accidentally logs message contents wireappwire-ios--2025-07-03 16:41:34 Deep Dive
CVE-2025-48066 wire-webapp has no database deletion on client logout wireappwire-webapp Medium 6.0 2025-05-22 17:20:27 Deep Dive
CVE-2025-48061 wire-webapp Has Insufficient Session Invalidation after User Logout wireappwire-webapp Medium 5.6 2025-05-22 17:04:43 Deep Dive
CVE-2023-48221 wire-avs remote format string vulnerability wireappwire-avs High 7.3 2023-11-20 17:18:19 Deep Dive
CVE-2023-22737 wire-server vulnerable to unauthorized removal of Bots from Conversations wireappwire-server Medium 6.5 2023-01-27 23:14:34 Deep Dive
CVE-2022-39380 wire-webapp contains Improper Handling of Exceptional Conditions leading to a DoS via Markdown Rendering wireappwire-webapp Medium 5.3 2023-01-27 20:43:13 Deep Dive
CVE-2022-31122 Wire-server vulnerable to Token Recipient Confusion resulting in account impersonation, deletion or malicious account creation wireappwire-server Critical 9.8 2022-10-18 00:00:00 Deep Dive
CVE-2022-29168 Cross Site Scripting in Wire Messages wireappwire-webapp Critical 9.6 2022-06-25 07:05:09 Deep Dive
CVE-2022-31009 DoS vulnerability: Invalid Accent Colors wireappwire-ios Medium 5.7 2022-06-23 06:40:10 Deep Dive
CVE-2022-24799 Cross Site Scripting in Wire Webapp wireappwire-webapp Critical 9.6 2022-04-20 17:55:09 Deep Dive
CVE-2021-41119 DoS vulnerabiliity in wire-server json parser wireappwire-server Medium 5.3 2022-04-13 18:25:11 Deep Dive
CVE-2022-23610 Improper Verification of Cryptographic Signature in wire-server wireappwire-server Critical 9.1 2022-03-16 17:40:10 Deep Dive
CVE-2022-23625 DoS vulnerability: Malformed Resource Identifiers wireappwire-ios Medium 6.5 2022-03-11 18:00:15 Deep Dive
CVE-2021-41193 Use of Externally-Controlled Format String in wire-avs wireappwire-avs Critical 9.8 2022-03-01 18:25:22 Deep Dive
CVE-2022-23605 Expired Ephemeral Messages not reliably removed in wire-webapp wireappwire-webapp Medium 4.4 2022-02-04 22:32:05 Deep Dive
CVE-2021-41100 Account takeover when having only access to a user's short lived token in wire-server wireappwire-server High 7.4 2021-10-04 18:25:10 Deep Dive
CVE-2021-41094 Mandatory encryption at rest can be bypassed (UI) in Wire app wireappwire-ios Medium 4.2 2021-10-04 18:20:13 Deep Dive
CVE-2021-41093 Account takeover when having only access to a user's short lived token wireappwire-ios High 7.4 2021-10-04 18:15:11 Deep Dive
CVE-2021-41101 CORS `Access-Control-Allow-Origin` settings are too lenient wireappwire-server Medium 5.7 2021-09-30 19:20:09 Deep Dive
CVE-2021-32755 Certificate pinning is not enforced on the web socket connection wireappwire-ios-transport Medium 5.4 2021-07-13 20:55:09 Deep Dive