homebrew
Security Risk Profile
73
/100
highSecurity Risk Score
Comprehensive risk assessment based on 5 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from June 4, 2024 to present
5
Total CVEs
4
Critical+High
0
Exploited
4
Unpatched
Threat Assessment
Avg CVSS
8.9
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
4
Critical/High
Risk Level
73/100
high
Severity Distribution
Critical
2High
2Medium
0Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Path Traversal
2
2
Malicious File Upload
2
3
Code Injection
1
Most Affected Products
1. npm/@janhq/core3
2. Homebrew Jan3
3. Homebrew Homebrew1
4. LogMeIn LogMeIn1
5. TradingView TradingView1
Recent Vulnerabilities
See more →https://www.bleepingcomputer.com/news/security/google-ads-for-fake-homebrew-logmein-sites-push-infostealers/
unknown
Google ads for fake Homebrew, LogMeIn sites push infostealers
10/18/2025🔧 No Patch
CVE-2024-42381
CVSS 8.3high
7/31/2024🔧 No Patch
CVE-2024-37273
CVSS 9.8critical
6/4/2024🔧 No Patch
CVE-2024-36857
CVSS 7.5high
6/4/2024🔧 No Patch
CVE-2024-36858
CVSS 9.8critical
6/4/2024🔧 No Patch
Monitor homebrew in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.