s
std42
Security Risk Profile
85
/100
criticalSecurity Risk Score
Comprehensive risk assessment based on 16 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from March 28, 2018 to present
16
Total CVEs
12
Critical+High
0
Exploited
4
Unpatched
Threat Assessment
Avg CVSS
8.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
4
Critical/High
Risk Level
85/100
critical
Severity Distribution
Critical
10High
2Medium
4Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Path Traversal
5
2
Malicious File Upload
4
3
OS Command Injection
3
4
Command Injection
2
5
XSS
2
Most Affected Products
1. std42 elFinder16
2. composer/studio-42/elfinder7
3. Studio-42 eLfinder2
4. elFinder elFinder1
Recent Vulnerabilities
See more →CVE-2026-41247
CVSS 8.9high
elFinder: Command injection in resize background color parameter when using ImageMagick CLI
Apr 23, 2026🔧 No Patch
CVE-2023-52045
CVSS 6.1medium
Oct 31, 2024🔧 No Patch
CVE-2023-52044
CVSS 9.8critical
Oct 31, 2024🔧 No Patch
CVE-2024-38909
CVSS 9.8critical
Jul 30, 2024🔧 No Patch
CVE-2023-35840
CVSS 6.5medium
Jun 19, 2023
CVE-2022-27115
CVSS 9.8critical
Apr 11, 2022
CVE-2021-43421
CVSS 9.8critical
Apr 7, 2022
CVE-2022-26960
CVSS 9.1critical
Mar 21, 2022
CVE-2021-45919
CVSS 5.4medium
Feb 8, 2022🔧 No Patch
CVE-2021-32682
CVSS 9.8critical
Multiple vulnerabilities leading to RCE
Jun 14, 2021
Monitor std42 in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.