sick has 4 CVEs on record. The median CVSS is 6.0 (medium).
CVEs per month
Last 12 months, by publish date
1125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/091026/10
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 6.0
- Publish → KEV
- —
- Last 90 days
- 0 prev 0
4
Total CVEs
0
Critical
0
CISA KEV
0
Exploited
Worst active — by depth score
CVE-2025-59461High· 7.6A remote unauthenticated attacker may use the unauthenticated C++ API to access or modify sensitive data and disrupt services.42CVE-2025-59462Medium· 6.5An attacker who tampers with the C++ CLI client may crash the UpdateService during file transfers, disrupting updates and availability.36CVE-2025-59459Medium· 5.5An attacker that gains SSH access to an unprivileged account may be able to disrupt services (including SSH), causing persistent loss of availability.30CVE-2025-59463Medium· 4.3An attacker may cause chunk-size mismatches that block file transfers and prevent subsequent transfers.24
sick vulnerabilities
CVEs affecting sick, newest first. Open any entry for full detail, references, and exploit status.
4 CVEsRSS
CVE-2025-59463Medium· 4.3An attacker may cause chunk-size mismatches that block file transfers and prevent subsequent transfers.
An attacker may cause chunk-size mismatches that block file transfers and prevent subsequent transfers.
▾ Sunlitsick · tloc100-100_firmwareEPSS 0.41%via NVD
CVE-2025-59462Medium· 6.5An attacker who tampers with the C++ CLI client may crash the UpdateService during file transfers, disrupting updates and availability.
An attacker who tampers with the C++ CLI client may crash the UpdateService during file transfers, disrupting updates and availability.
▾ Sunlitsick · tloc100-100_firmwareEPSS 0.55%via NVD
CVE-2025-59461High· 7.6A remote unauthenticated attacker may use the unauthenticated C++ API to access or modify sensitive data and disrupt services.
A remote unauthenticated attacker may use the unauthenticated C++ API to access or modify sensitive data and disrupt services.
▾ Twilightsick · tloc100-100_firmwareEPSS 0.49%via NVD
CVE-2025-59459Medium· 5.5An attacker that gains SSH access to an unprivileged account may be able to disrupt services (including SSH), causing persistent loss of availability.
An attacker that gains SSH access to an unprivileged account may be able to disrupt services (including SSH), causing persistent loss of availability.
▾ Sunlitsick · tloc100-100_firmwareEPSS 0.34%via NVD