g
getgophish
Security Risk Profile
62
/100
highSecurity Risk Score
Comprehensive risk assessment based on 13 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from September 9, 2019 to present
13
Total CVEs
4
Critical+High
0
Exploited
3
Unpatched
Threat Assessment
Avg CVSS
6.3
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
3
Critical/High
Risk Level
62/100
high
Severity Distribution
Critical
1High
3Medium
9Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
XSS
6
2
Infoleak
1
3
SSRF
1
Most Affected Products
1. Getgophish Gophish13
2. go/github.com/gophish/gophish4
3. gopkg.in/gophish1
4. Gophish Gophish1
Recent Vulnerabilities
See more →CVE-2025-70963
CVSS 7.6high
Feb 6, 2026🔧 No Patch
CVE-2024-2211
CVSS 6.1medium
Cross-Site Scripting vulnerability in Gophish Admin Panel
Mar 6, 2024
CVE-2022-45003
CVSS 7.5high
Mar 22, 2023🔧 No Patch
CVE-2022-45004
CVSS 6.1medium
Mar 22, 2023🔧 No Patch
CVE-2022-25295
CVSS 5.4medium
Open Redirect
Sep 11, 2022
CVE-2020-24707
CVSS 9.3critical
Oct 28, 2020
CVE-2020-24713
CVSS 7.5high
Oct 28, 2020🔧 No Patch
CVE-2020-24711
CVSS 6.5medium
Oct 28, 2020
CVE-2020-24710
CVSS 5.3medium
Oct 28, 2020
CVE-2020-24712
CVSS 5.4medium
Oct 28, 2020
Monitor getgophish in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.