maxkb has 4 CVEs on record. The median CVSS is 8.1 (high).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 8.1
- Publish → KEV
- —
- Last 90 days
- 0 prev 0
Worst active — by depth score
CVE-2025-66446High· 8.8MaxKB is an open-source AI assistant for enterprise48CVE-2025-66419High· 8.8MaxKB is an open-source AI assistant for enterprise48CVE-2025-64511High· 7.4MaxKB is an open-source AI assistant for enterprise41CVE-2025-64703Medium· 6.3MaxKB is an open-source AI assistant for enterprise35
maxkb vulnerabilities
CVEs affecting maxkb, newest first. Open any entry for full detail, references, and exploit status.
4 CVEsRSS
CVE-2025-66446High· 8.8MaxKB is an open-source AI assistant for enterprise
MaxKB is an open-source AI assistant for enterprise. Versions 2.3.1 and below have improper file permissions which allow attackers to overwrite the built-in dynamic linker and other critical files, potentially resulting in privilege esca…
CVE-2025-66419High· 8.8MaxKB is an open-source AI assistant for enterprise
MaxKB is an open-source AI assistant for enterprise. In versions 2.3.1 and below, the tool module allows an attacker to escape the sandbox environment and escalate privileges under certain concurrent conditions. This issue is fixed in ve…
CVE-2025-64703Medium· 6.3MaxKB is an open-source AI assistant for enterprise
MaxKB is an open-source AI assistant for enterprise. In versions prior to 2.3.1, a user can get sensitive informations by Python code in tool module, although the process run in sandbox. Version 2.3.1 fixes the issue.
CVE-2025-64511High· 7.4MaxKB is an open-source AI assistant for enterprise
MaxKB is an open-source AI assistant for enterprise. In versions prior to 2.3.1, a user can access internal network services such as databases through Python code in the tool module, although the process runs in a sandbox. Version 2.3.1 …