bishopfox has 3 CVEs on record between 2023 and 2026. 1 was published in the last 90 days. The median CVSS is 8.8 (high), with 1 rated critical.
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 8.8
- Publish → KEV
- —
- Last 90 days
- 1 prev 1
Products
- github.com/BishopFox/joro 1
- github.com/bishopfox/sliver 1
- sliver 1
Worst active — by depth score
bishopfox vulnerabilities
CVEs affecting bishopfox, newest first. Open any entry for full detail, references, and exploit status.
3 CVEsRSS
CVE-2026-53649Critical· 9.6Joro is a web exploitation framework
Joro is a web exploitation framework. Prior to version 1.1.1, Joro's default proxy mode exposes a local API on 127.0.0.1:9090 that performs no authentication and applies a wildcard CORS policy. Because plugin uploads use the CORS-safelis…
CVE-2026-34227High· 8.8PoCSliver is a command and control framework that uses a custom Wireguard netstack
Sliver is a command and control framework that uses a custom Wireguard netstack. Prior to version 1.7.4, a single click on a malicious link gives an unauthenticated attacker immediate, silent control over every active C2 session or beaco…
CVE-2023-34758High· 8.1Silver vulnerable to MitM attack against implants due to a cryptography vulnerability
Silver vulnerable to MitM attack against implants due to a cryptography vulnerability