Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Comodo — Vulnerabilities & Security Advisories 44

Browse all 44 CVE security advisories affecting Comodo. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Comodo operates primarily as a cybersecurity vendor, offering endpoint protection, identity management, and secure browsing solutions to enterprise and consumer markets. Its software portfolio, including the widely used Comodo Internet Security suite, has historically been associated with a significant number of Common Vulnerabilities and Exposures (CVEs), currently totaling 42. These vulnerabilities frequently involve remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from improper input validation or insecure default configurations within its desktop agents and cloud-based services. Notable incidents include past exploits that allowed attackers to bypass security controls or execute arbitrary code on affected systems. The high volume of disclosed CVEs highlights ongoing challenges in maintaining robust code hygiene across its extensive product line, necessitating rigorous patch management for organizations relying on its endpoint protection infrastructure.

CVE ID Title CVSS Severity Published
CVE-2019-25402 Comodo Dome Firewall 2.7.0 Cross-Site Scripting via login — Comodo Dome Firewall CWE-79 6.1 Medium 2026-02-19
CVE-2025-8206 Comodo Dragon IP DNS Leakage Detector cross site scripting — Dragon CWE-79 3.1 Low 2025-07-26
CVE-2025-8205 Comodo Dragon IP DNS Leakage Detector cleartext transmission — Dragon CWE-319 3.7 Low 2025-07-26
CVE-2025-8204 Comodo Dragon HSTS security check — Dragon CWE-358 3.1 Low 2025-07-26
CVE-2025-7098 Comodo Internet Security Premium File Name path traversal — Internet Security Premium CWE-22 5.6 Medium 2025-07-06
CVE-2025-7097 Comodo Internet Security Premium Manifest File cis_update_x64.xml os command injection — Internet Security Premium CWE-78 8.1 High 2025-07-06
CVE-2025-7096 Comodo Internet Security Premium Manifest File cis_update_x64.xml integrity check — Internet Security Premium CWE-354 8.1 High 2025-07-06
CVE-2025-7095 Comodo Internet Security Premium Update certificate validation — Internet Security Premium CWE-295 3.7 Low 2025-07-06
CVE-2024-7252 Comodo Internet Security Pro cmdagent Link Following Local Privilege Escalation Vulnerability — Internet Security Pro CWE-59 7.8AI High AI 2024-07-29
CVE-2024-7251 Comodo Internet Security Pro cmdagent Link Following Local Privilege Escalation Vulnerability — Internet Security Pro CWE-59 7.8AI High AI 2024-07-29
CVE-2024-7250 Comodo Internet Security Pro cmdagent Link Following Local Privilege Escalation Vulnerability — Internet Security Pro CWE-59 7.8AI High AI 2024-07-29
CVE-2024-7249 Comodo Firewall Link Following Local Privilege Escalation Vulnerability — Firewall CWE-59 7.8AI High AI 2024-07-29
CVE-2024-7248 Comodo Internet Security Pro Directory Traversal Local Privilege Escalation Vulnerability — Internet Security Pro CWE-22 7.8AI High AI 2024-07-29
CVE-2019-3969 Comodo Security Solutions Antivirus 权限许可和访问控制问题漏洞 — Comodo Antivirus 7.8 - 2019-07-17

This page lists every published CVE security advisory associated with Comodo. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.