CVE Tools

E-series Performance Analyzer

61 CVEs tracked. 1 of them are in CISA KEV.

This hub aggregates every CVE we track for E-series Performance Analyzer, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.

E-series Performance Analyzer CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
E-series Performance Analyzer CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-110
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 61 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical23%
  • High2439%
  • Medium2033%
  • Low1525%

Latest CVEs

The 15 most recently published vulnerabilities affecting E-series Performance Analyzer.

  1. CVE-2022-23491Removal of TrustCor root certificate6.8
  2. CVE-2022-45061An issue was discovered in Python before 3.11.1. An unnecessary quadratic algorithm exists in one path when processing some inputs to the IDNA (RFC 3490) decoder, such that a crafted, unreasonably ...7.5
  3. CVE-2022-31123Grafana plugin signature bypass vulnerability6.1
  4. CVE-2021-3999A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to memory corruption when the size of the buffer is exactly 1. A local attacker who can control the input...7.8
  5. CVE-2022-31107Grafana account takeover via OAuth vulnerability7.1
  6. CVE-2022-31097Stored XSS in Grafana's Unified Alerting7.3
  7. CVE-2022-21713Exposure of Sensitive Information in Grafana4.3
  8. CVE-2022-21703Cross Site Request Forgery in Grafana6.3
  9. CVE-2022-21702Cross site scripting in Grafana proxy6.5
  10. CVE-2021-4044Invalid handling of X509_verify_cert() internal errors in libssl7.5
  11. CVE-2021-26707The merge-deep library before 3.0.3 for Node.js can be tricked into overwriting properties of Object.prototype or adding new properties to it. These properties are then inherited by every object in...9.8
  12. CVE-2021-33587The css-what package 4.0.0 through 5.0.0 for Node.js does not ensure that attribute parsing has Linear Time Complexity relative to the size of the input.7.5
  13. CVE-2021-33623The trim-newlines package before 3.0.1 and 4.x before 4.0.1 for Node.js has an issue related to regular expression denial-of-service (ReDoS) for the .end() method.7.5
  14. CVE-2021-32640ReDoS in Sec-Websocket-Protocol header5.3
  15. CVE-2021-23383Prototype Pollution5.6

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store