Browse all 4 CVE security advisories affecting Abstrium. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Abstrium develops enterprise-grade API security solutions focused on protecting web service endpoints and microservices architectures. Historically, their products have been susceptible to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from improper input validation and access control flaws. The company has addressed multiple critical security issues, including four publicly disclosed CVEs, primarily affecting API gateways and authentication modules. While no major data breaches have been publicly attributed to Abstrium's vulnerabilities, their security track record highlights challenges in securing complex API integrations, particularly in environments handling sensitive authentication flows and untrusted third-party connections.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2023-2981 | Abstrium Pydio Cells Chat cross site scripting — Pydio CellsCWE-80 | 3.5 | Low | 2023-05-30 |
| CVE-2023-2980 | Abstrium Pydio Cells User Creation resource injection — Pydio CellsCWE-99 | 6.3 | Medium | 2023-05-30 |
| CVE-2023-2979 | Abstrium Pydio Cells User Creation access control — Pydio CellsCWE-284 | 4.7 | Medium | 2023-05-30 |
| CVE-2023-2978 | Abstrium Pydio Cells Change Subscription authorization — Pydio CellsCWE-639 | 4.6 | Medium | 2023-05-30 |
This page lists every published CVE security advisory associated with Abstrium. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.