viewvc
Security Risk Profile
43
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 21 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from October 21, 2006 to present
21
Total CVEs
3
Critical+High
0
Exploited
0
Unpatched
Threat Assessment
Avg CVSS
5.2
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
0
Critical/High
Risk Level
43/100
medium
Severity Distribution
Critical
0High
3Medium
16Low
2Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
XSS
10
2
Infoleak
5
3
Path Traversal
1
Most Affected Products
1. viewvc ViewVC187
2. Debian Debian Linux6
3. debian/viewvc1
4. openSUSE Leap1
5. Opensuse Project Leap1
Recent Vulnerabilities
See more →CVE-2025-54141
CVSS 7.5high
ViewVC's standalone server exposes arbitrary server filesystem content
7/22/2025
CVE-2023-22464
CVSS 5.4medium
ViewVC XSS vulnerability in revision view changed path "copyfrom" locations
1/4/2023🔧 No Patch
CVE-2023-22456
CVSS 6.1medium
ViewVC XSS vulnerability in revision view changed paths
1/3/2023
CVE-2020-5283
CVSS 3.5low
XSS vulnerability in CVS show_subdir_lastmod support
4/3/2020🔧 No Patch
CVE-2007-5743
CVSS 7.5high
11/7/2019
CVE-2017-5938
CVSS 6.1medium
3/15/2017
CVE-2012-4533
CVSS 4.3medium
11/19/2012🔧 No Patch
CVE-2012-3356
CVSS 5.0medium
7/22/2012🔧 No Patch
CVE-2012-3357
CVSS 5.0medium
7/22/2012🔧 No Patch
CVE-2009-5024
CVSS 5.0medium
5/23/2011
Monitor viewvc in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.