t
tor project
Security Risk Profile
46
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 26 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from May 16, 2011 to present
26
Total CVEs
10
Critical+High
1
Exploited
2
Unpatched
Threat Assessment
Avg CVSS
6.4
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
2
Critical/High
Risk Level
46/100
medium
⚠️ 1 Active Exploits⚡ 1 Zero-Days🆕 2Fresh (<7d)📈 3 in Last 30 Days
Severity Distribution
Critical
3High
7Medium
10Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Use After Free
2
2
Null Pointer Dereference
2
3
Race Condition
1
4
Buffer Overflow
1
Most Affected Products
1. Tor Project Tor43
2. torproject Tor10
3. Debian Debian Linux10
4. debian/tor5
5. Mozilla Firefox3
Recent Vulnerabilities
See more →https://seclists.org/oss-sec/2026/q3/917
unknown
Fwd: Tor Project Forum: Security lease 0.4.9.13
Sep 24, 2026🔧 No Patch
https://seclists.org/oss-sec/2026/q3/916
unknown
Fwd: Tor Project Forum: Security lease 0.4.9.12
Sep 24, 2026🔧 No Patch
https://seclists.org/oss-sec/2026/q3/684
unknown
Fwd: Tor Project Forum: Security lease 0.4.9.12
Sep 8, 2026🔧 No Patch
CVE-2026-77640
CVSS 5.3medium
Aug 20, 2026🔧 No Patch
CVE-2026-77639
CVSS 5.3medium
Aug 20, 2026🔧 No Patch
CVE-2026-77638
CVSS 9.0critical
Aug 20, 2026🔧 No Patch
CVE-2026-77584
CVSS 8.2high
Aug 20, 2026🔧 No Patch
CVE-2026-44603
CVSS 9.1critical
May 7, 2026
CVE-2026-44602
CVSS 7.5high
May 7, 2026
CVE-2026-44601
CVSS 7.5high
May 7, 2026
Monitor tor project in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.