CVE Tools

Trueconf

8 CVEs tracked since 2022. Since Jun 2022, none of them reached CISA KEV.

Trueconf CVEs per month

Jun 2022 to Jun 2022. Point at a month, or focus the strip and use the arrow keys.
Trueconf CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2022-0680

Products

The products that kept showing up in Trueconf's monthly top three, with their CVEs summed over those months.

  1. Server81 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Trueconf.

  1. CVE-2026-72530A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and earlier could use a specially crafted script...9.0
  2. CVE-2026-72529A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and earlier could execute an arbitrary script by...9.8
  3. CVE-2026-3502TrueConf Client Update Integrity Verification Bypass7.8
  4. CVE-2025-66835TrueConf Client 8.5.2 is vulnerable to DLL hijacking via crafted wfapi.dll allowing local attackers to execute arbitrary code within the user's context.7.1
  5. CVE-2025-66823An HTML Injection vulnerability in TrueConf server 5.5.2.10813 in the conference description field allows an attacker to inject arbitrary HTML in the Create/Edit conference functionality. The paylo...5.4
  6. CVE-2025-66834A CSV Formula Injection vulnerability in TrueConf Server v5.5.2.10813 allows a normal user to inject malicious spreadsheet formulas into exported chat logs via crafted Display Name.7.3
  7. CVE-2025-66824A Stored Cross-Site Scripting (XSS) vulnerability exists in the Meeting location field of the Create/Edit Conference functionality in TrueConf Server v5.5.2.10813. The injected payload is stored vi...8.7
  8. CVE-2022-46763A SQL injection issue in a database stored function in TrueConf Server 5.2.0.10225 (fixed in 5.2.6.10025) allows a low-privileged database user to execute arbitrary SQL commands as the database adm...8.8
  9. CVE-2022-46764A SQL injection issue in the web API in TrueConf Server 5.2.0.10225 (fixed in 5.2.6.10025) allows remote unauthenticated attackers to execute arbitrary SQL commands, ultimately leading to remote co...9.8
  10. CVE-2017-20120TrueConf Server cross-site request forgery4.3
  11. CVE-2017-20119TrueConf Server change-lang redirect3.5
  12. CVE-2017-20118TrueConf Server DOM cross site scripting3.5
  13. CVE-2017-20117TrueConf Server group DOM cross site scripting3.5
  14. CVE-2017-20116TrueConf Server Reflected cross site scripting3.5
  15. CVE-2017-20115TrueConf Server Reflected cross site scripting3.5

The record

Peak rank
#96 in Jun 2022
Busiest month shown
Jun 2022, 8 CVEs
Months with a KEV entry
0 since Jun 2022
Monthly snapshots
1 since 2022
Trueconf's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store