Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

LoftOcean — Vulnerabilities & Security Advisories 9

Browse all 9 CVE security advisories affecting LoftOcean. AI-powered Chinese analysis, POCs, and references for each vulnerability.

LoftOcean develops cloud-native application security solutions focused on protecting containerized environments and DevOps pipelines. Historically, their products have been associated with vulnerabilities including remote code execution, cross-site scripting, and privilege escalation flaws. The company has recorded 8 CVEs to date, with several critical issues allowing unauthorized access or system compromise. Notable security characteristics include their integration with popular DevOps tools and their emphasis on runtime protection. While no major public security incidents have been documented, the consistent appearance of vulnerabilities in their software highlights the ongoing challenges in securing complex cloud-native architectures.

Found 2 results / 9 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2024-13412 CozyStay <= 1.7.0 - Missing Authorization to Arbitrary Action Execution in ajax_handler — CozyStay - Hotel Booking WordPress Theme CWE-862 7.5 High 2025-03-19
CVE-2024-13410 CozyStay <= 1.7.0 and TinySalt <= 3.9.0 - Unauthenticated PHP Object Injection in ajax_handler — CozyStay - Hotel Booking WordPress Theme CWE-502 9.8 Critical 2025-03-19

This page lists every published CVE security advisory associated with LoftOcean. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.