Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

step-security — Vulnerabilities & Security Advisories 5

Browse all 5 CVE security advisories affecting step-security. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Step-security provides application security testing solutions, focusing on identifying vulnerabilities in software development pipelines. Historically, their products have commonly detected remote code execution, cross-site scripting, and privilege escalation vulnerabilities across various applications. While no major public security incidents have been reported, the company maintains a moderate vulnerability history with five CVEs recorded, primarily related to input validation flaws and improper access controls in their own tools. Their security characteristics emphasize automated scanning and integration with CI/CD processes, though the presence of their own CVEs highlights the challenges of maintaining security in security tools.

Top products by step-security: harden-runner

This page lists every published CVE security advisory associated with step-security. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.