h
horde
Security Risk Profile
50
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 124 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from December 19, 2000 to present
124
Total CVEs
26
Critical+High
0
Exploited
10
Unpatched
Threat Assessment
Avg CVSS
5.6
Base severity
Avg EPSS
1%
Exploit probability
Unpatched
10
Critical/High
Risk Level
50/100
medium
📈 1 in Last 30 Days
Severity Distribution
Critical
5High
21Medium
92Low
6Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
1Age Distribution
Common Weaknesses (CWE)
1
XSS
73
2
CSRF
8
3
Code Injection
5
4
Path Traversal
4
5
OS Command Injection
3
Most Affected Products
1. Horde IMP377
2. Horde Groupware Webmail Edition322
3. Horde Horde Application Framework282
4. Horde HORDE139
5. Horde Application Framework115
Recent Vulnerabilities
See more →CVE-2026-65053
CVSS 5.1medium
Horde IMP before 7.2.0 Stored Cross-Site Scripting via AppleDouble Viewer Part Name
Aug 24, 2026🔧 No Patch
CVE-2026-60102
CVSS 7.7high
Horde VFS < 3.0.1 OS Command Injection via Horde_Vfs_Smb Driver
Jul 8, 2026🔧 No Patch
CVE-2026-58451
CVSS 7.1high
Horde IMP < 7.0.1 Path Traversal via Compose.php img src
Jul 1, 2026🔧 No Patch
CVE-2025-41066
CVSS 6.9medium
Disclosure of sensitive information in Horde Groupware
Dec 2, 2025
CVE-2025-30349
CVSS 7.2EPSS 1%high
Mar 21, 2025🔧 No Patch
CVE-2022-30287
CVSS 8.0high
Jul 28, 2022🔧 No Patch
CVE-2022-26874
CVSS 5.4medium
Mar 11, 2022
CVE-2021-26929
CVSS 6.1medium
Feb 14, 2021🔧 No Patch
CVE-2020-8034
CVSS 6.1medium
May 18, 2020
CVE-2020-8035
CVSS 6.1medium
May 18, 2020🔧 No Patch
Monitor horde in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.