📦

shotwell

Vendor: gnome

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 20 Total Indexed
Avg. EPSS 1.03% Exploit Prob.
Latest CVE CVE-2017-1000024 Jul 17

Security Vulnerability Index

Page 1 / 2
7.5 CVSS

Shotwell version 0.24.4 or earlier and 0.25.3 or earlier is vulnerable to an information disclosure in the web publishing plugins resulting in potential password and oauth token plaintext transmission

EPSS: 1.21%
3.7 CVSS

Shotwell version 0.22.0 (and possibly other versions) is vulnerable to a TLS/SSL certification validation flaw resulting in a potential for man in the middle attacks.

EPSS: 0.85%