VulnSea

vantage6 has 18 CVEs on record between 2023 and 2026. Disclosures have slowed: 2 in the last 90 days after 4 in the 90 before. The busiest recent month was June 2026 with 4. The median CVSS is 6.0 (medium). None have a confirmed exploitation report.

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
6.0
Publish → KEV
Last 90 days
2 prev 4

Weakness classes

Products

  • vantage6 18
18
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

vantage6 vulnerabilities

CVEs affecting vantage6, newest first. Open any entry for full detail, references, and exploit status.

18 CVEsRSS

CVE-2026-73652High
1mo ago

vantage6 is an open-source infrastructure for privacy preserving analysis

vantage6 is an open-source infrastructure for privacy preserving analysis. In version 5.0.2 and earlier, the algorithm-store edit permission lacks an ownership check, allowing one algorithm developer to alter another developer's algorith…

Twilightvantage6 · vantage6EPSS 0.21%via NVD
GHSA-47w6-gwp4-w6vcHigh
2mo ago

vantage6: Algorithm developer can edit another developer's algorithm that is pending / under review

vantage6: Algorithm developer can edit another developer's algorithm that is pending / under review

Twilightvantage6 · vantage6via GHSA
CVE-2024-24769Low
3mo ago

Vantage6: No limit on emails sent for password/MFA reset

Vantage6: No limit on emails sent for password/MFA reset

Sunlitvantage6 · vantage6EPSS 0.28%via OSV
CVE-2024-27928Medium
3mo ago

Vantage6: 2FA can be circumvented with hacked email access

Vantage6: 2FA can be circumvented with hacked email access

Sunlitvantage6 · vantage6EPSS 0.28%via OSV
CVE-2026-54533Medium
3mo ago

vantage6 node has an Improper Access Control issue

vantage6 node has an Improper Access Control issue

Sunlitvantage6 · vantage6EPSS 0.29%via OSV
CVE-2026-54445Medium
3mo ago

Vantage6: Set admin user and password from environment or configuration

Vantage6: Set admin user and password from environment or configuration

Sunlitvantage6 · vantage6EPSS 0.29%via OSV
CVE-2024-32969Low· 2.7
2y ago

vantage6 collaboration admins can extend their influence by expanding the collaboration

vantage6 collaboration admins can extend their influence by expanding the collaboration

Sunlitvantage6 · vantage6EPSS 0.32%via OSV
CVE-2024-24770Medium· 5.3
2y ago

vantage6 vulnerable to a username timing attack on recover password/MFA token

vantage6 vulnerable to a username timing attack on recover password/MFA token

Sunlitvantage6 · vantage6EPSS 0.40%via OSV
CVE-2024-23823Medium· 4.2
2y ago

vantage6's CORS settings overly permissive

vantage6's CORS settings overly permissive

Sunlitvantage6 · vantage6EPSS 0.31%via OSV
CVE-2024-21649High· 8.8
2y ago

vantage6 remote code execution vulnerability

vantage6 remote code execution vulnerability

Twilightvantage6 · vantage6EPSS 1.3%via OSV
CVE-2024-22193Low· 3.5
2y ago

vantage6 may create unencrypted tasks in encrypted collaboration

vantage6 may create unencrypted tasks in encrypted collaboration

Sunlitvantage6 · vantage6EPSS 0.26%via OSV
CVE-2024-21653Medium· 6.5
2y ago

vantage6 has insecure SSH configuration for node and server containers

vantage6 has insecure SSH configuration for node and server containers

Sunlitvantage6 · vantage6EPSS 0.47%via OSV
CVE-2023-41881Low· 3.7
2y ago

vantage6 does not properly delete linked resources when deleting a collaboration

vantage6 does not properly delete linked resources when deleting a collaboration

Sunlitvantage6 · vantage6EPSS 0.32%via OSV
CVE-2023-23930High· 7.2
2y ago

Pickle serialization vulnerable to Deserialization of Untrusted Data

Pickle serialization vulnerable to Deserialization of Untrusted Data

Twilightvantage6 · vantage6EPSS 0.89%via OSV
CVE-2023-28635Medium· 5.4
2y ago

Defining resource name as integer may give unintended access in vantage6

Defining resource name as integer may give unintended access in vantage6

Sunlitvantage6 · vantage6EPSS 0.41%via OSV
CVE-2023-22738Medium· 6.5
3y ago

vantage6 vulnerable to Improper Preservation of Permissions

vantage6 vulnerable to Improper Preservation of Permissions

Sunlitvantage6 · vantage6EPSS 0.38%via OSV
CVE-2023-23929High· 8.8
3y ago

vantage6 refresh tokens do not expire

vantage6 refresh tokens do not expire

Twilightvantage6 · vantage6EPSS 0.57%via OSV
CVE-2022-39228Medium· 6.5
3y ago

vantage6 vulnerable to Observable Response Discrepancy

vantage6 vulnerable to Observable Response Discrepancy

Sunlitvantage6 · vantage6EPSS 0.60%via OSV
vantage6 vulnerabilities (CVEs) · VulnSea