Synopsys
4 CVEs tracked since 2023. Since Feb 2023, none of them reached CISA KEV.
Synopsys CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2023-02 | 4 | 0 |
Products
The products that kept showing up in Synopsys's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 10 most recently published vulnerabilities affecting Synopsys.
- CVE-2024-0226Stored Cross-Site Scripting in Synopsys Seeker4.8
- CVE-2023-2158Impersonation through User-Controlled Token9.8
- CVE-2023-1663Authenticated Resources Accessible via Forced Browsing6.5
- CVE-2023-23850A missing permission check in Synopsys Jenkins Coverity Plugin 3.0.2 and earlier allows attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins.4.3
- CVE-2023-23848Missing permission checks in Synopsys Jenkins Coverity Plugin 3.0.2 and earlier allow attackers with Overall/Read permission to connect to an attacker-specified HTTP server using attacker-specified...4.3
- CVE-2023-23847A cross-site request forgery (CSRF) vulnerability in Synopsys Jenkins Coverity Plugin 3.0.2 and earlier allows attackers to connect to an attacker-specified HTTP server using attacker-specified cre...3.5
- CVE-2023-23849Versions of Coverity Connect prior to 2022.12.0 are vulnerable to an unauthenticated Cross-Site Scripting vulnerability. Any web service hosted on the same sub domain can set a cookie for the whole...6.1
- CVE-2022-30278A vulnerability in Black Duck Hub’s embedded MadCap Flare documentation files could allow an unauthenticated remote attacker to conduct a cross-site scripting attack. The vulnerability is due to ...6.1
- CVE-2020-27589Synopsys hub-rest-api-python (aka blackduck on PyPI) version 0.0.25 - 0.0.52 does not validate SSL certificates in certain cases.7.5
- CVE-2019-3800CF CLI writes the client id and secret to config file6.3
The record
- Peak rank
- #176 in Feb 2023
- Busiest month shown
- Feb 2023, 4 CVEs
- Months with a KEV entry
- 0 since Feb 2023
- Monthly snapshots
- 1 since 2023