signify has 2 CVEs on record between 2025 and 2026. The median CVSS is 7.5 (high).
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 7.5
- Publish → KEV
- —
- Last 90 days
- 0 prev 0
Weakness classes
Products
- signify 1
- wiz_connected 1
2
Total CVEs
0
Critical
0
CISA KEV
0
Exploited
Worst active — by depth score
CVE-2025-70887HighSignify allows a remote attacker to escalate privileges via the signed_data.py and the context.py components41CVE-2025-56562High· 7.5An incorrect API discovered in Signify Wiz Connected 1.9.1 allows attackers to remotely launch a DoS on Wiz devices only requiring the MAC address.41
signify vulnerabilities
CVEs affecting signify, newest first. Open any entry for full detail, references, and exploit status.
2 CVEsRSS
CVE-2025-70887HighSignify allows a remote attacker to escalate privileges via the signed_data.py and the context.py components
Signify allows a remote attacker to escalate privileges via the signed_data.py and the context.py components
▾ Twilightsignify · signifyEPSS 0.34%via OSV
CVE-2025-56562High· 7.5An incorrect API discovered in Signify Wiz Connected 1.9.1 allows attackers to remotely launch a DoS on Wiz devices only requiring the MAC address.
An incorrect API discovered in Signify Wiz Connected 1.9.1 allows attackers to remotely launch a DoS on Wiz devices only requiring the MAC address.
▾ Twilightsignify · wiz_connectedEPSS 0.33%via NVD