b
best practical
Security Risk Profile
54
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 7 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from January 24, 2011 to present
7
Total CVEs
5
Critical+High
0
Exploited
5
Unpatched
Threat Assessment
Avg CVSS
6.2
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
5
Critical/High
Risk Level
54/100
medium
Severity Distribution
Critical
0High
5Medium
1Low
1Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
XSS
4
2
SQL Injection
1
3
CSRF
1
Most Affected Products
1. bestpractical Request Tracker7
2. Best Practical RT5
3. Best Practical Request Tracker2
4. debian/request-tracker41
5. debian/request-tracker51
Recent Vulnerabilities
See more →CVE-2026-41075
CVSS 8.8high
RT: SQL injection via entry_aggregator parameter in JSON search
May 22, 2026🔧 No Patch
CVE-2026-41074
CVSS 7.1high
RT has broken CSRF protection for authenticated users
May 22, 2026🔧 No Patch
CVE-2026-6841
CVSS 5.1medium
Reflected XSS in Request Tracker
May 21, 2026
CVE-2025-30087
CVSS 7.2high
May 28, 2025🔧 No Patch
CVE-2025-31500
CVSS 7.2high
May 28, 2025🔧 No Patch
CVE-2025-31501
CVSS 7.2high
May 28, 2025🔧 No Patch
REDHAT-BUG-672250
CVSS 1.0low
Jan 24, 2011🔧 No Patch
Monitor best practical in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.