Algosec
3 CVEs tracked since 2014. Since Jan 2014, none of them reached CISA KEV.
Algosec CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2014-01 | 2 | 0 |
| 2014-02 | null or fewer | |
| 2014-03 | null or fewer | |
| 2014-04 | null or fewer | |
| 2014-05 | null or fewer | |
| 2014-06 | 1 | 0 |
Products
The products that kept showing up in Algosec's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 9 most recently published vulnerabilities affecting Algosec.
- CVE-2026-77654Local Privilege Escalation via Misconfigured Sudoers Entry in Horizon Security Analyzer—
- CVE-2025-12381Privilege Escalation via Misconfigured Sudoers Entry for Local Users in AlgoSec Firewall Analyzer7.8
- CVE-2025-12382Path Traversal Allows Remote Code Execution in AlgoSec Firewall Analyzer8.8
- CVE-2023-46596Improper input validation in FireFlow’s VisualFlow workflow editor5.1
- CVE-2023-46595Net-NTLM leak via HTML injection in FireFlow VisualFlow workflow editor5.9
- CVE-2022-36783AlgoSec – FireFlow Reflected Cross-Site-Scripting (RXSS)6.5
- CVE-2014-4164Cross-site scripting (XSS) vulnerability in AlgoSec FireFlow 6.3-b230 allows remote attackers to inject arbitrary web script or HTML via a user signature to SelfService/Prefs.html.4.3
- CVE-2013-5092Cross-site scripting (XSS) vulnerability in afa/php/Login.php in AlgoSec Firewall Analyzer 6.1-b86 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.4.3
- CVE-2013-7318Cross-site scripting (XSS) vulnerability in BusinessFlow/login in AlgoSec Firewall Analyzer 6.4 allows remote attackers to inject arbitrary web script or HTML via the message parameter.4.3
The record
- Peak rank
- #53 in Jan 2014
- Busiest month shown
- Jan 2014, 2 CVEs
- Months with a KEV entry
- 0 since Jan 2014
- Monthly snapshots
- 2 since 2014