o
orangelab
Security Risk Profile
66
/100
highSecurity Risk Score
Comprehensive risk assessment based on 3 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 9, 2023 to present
3
Total CVEs
3
Critical+High
0
Exploited
1
Unpatched
Threat Assessment
Avg CVSS
8.3
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
1
Critical/High
Risk Level
66/100
high
Severity Distribution
Critical
0High
3Medium
0Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
CSRF
2
2
Command Injection
1
3
OS Command Injection
1
Most Affected Products
1. Orangelab Imagemagick Engine Wordpress3
2. ImageMagick ImageMagick Engine1
3. ImageMagick ImageMagick Engine for WordPress1
Recent Vulnerabilities
See more →CVE-2024-6486
CVSS 7.2high
ImageMagick Engine < 1.7.11 - Administrator+ OS Command Injection
May 15, 2025🔧 No Patch
CVE-2022-2441
CVSS 8.8high
ImageMagick Engine <= 1.7.5 - Cross-Site Request Forgery to Remote Command Execution
Oct 20, 2023
CVE-2022-3568
CVSS 8.8high
ImageMagick Engine <= 1.7.5 - Cross-Site Request Forgery to PHAR Deserialization
Feb 9, 2023
Monitor orangelab in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.