Syslifters
- Total products in the ecosystem
- 1
- Total vulnerabilities (90 days)
- 5
en
Verify to analyze this security profile
As of 09/20/2026, Syslifters recorded 5 security vulnerabilities in the last 90 days across 1 products, including 2 rated High or above and 0 known exploited vulnerabilities (KEV) that should be prioritized for immediate remediation.
Over the last 90 days, sysreptor had the most security vulnerabilities in the Syslifters ecosystem, with 5 vulnerabilities—approximately 100% of the provider's total vulnerabilities during this period.
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.
Explore CyStack VulnScan| Vulnerability | Exploitation status | Fix | Affected product | Published | Severity |
|---|---|---|---|---|---|
CVE-2026-81181SysReptor: Session Fixation in Password-Protected Shared Notes | Exploitation statusNot confirmed | FixYes | Affected productsysreptor | Published09/18/2026 | SeverityLow |
CVE-2026-81182SysReptor: Unauthorized file disclosure by broken access control in writable shared notes | Exploitation statusNot confirmed | FixYes | Affected productsysreptor | Published09/18/2026 | SeverityMedium |
CVE-2026-81180SysReptor: Authenticated RCE by insecure image processing | Exploitation statusNot confirmed | FixYes | Affected productsysreptor | Published09/18/2026 | SeverityHigh |
CVE-2026-81179SysReptor: Host header injection might allow account takeover | Exploitation statusNot known exploited | FixYes | Affected productsysreptor | Published09/18/2026 | SeverityHigh |
CVE-2026-81178SysReptor: Anonymous note-share link discloses project member identities and non-shared note activity | Exploitation statusNot known exploited | FixYes | Affected productsysreptor | Published09/18/2026 | SeverityLow |
CVE-2026-44987SysReptor: Privilege Escalation from User Admin to Superuser | Exploitation statusNot known exploited | FixYes | Affected productsysreptor | Published05/08/2026 | SeverityLow |
CVE-2026-42291SysReptor: Read-write access to personal notes by sharing-link creation with no authorization in SysReptor Professional | Exploitation statusNot known exploited | FixYes | Affected productsysreptor | Published05/08/2026 | SeverityMedium |
CVE-2025-66561SysReptor Vulnerable to an Authenticated Stored Cross-Site Scripting (XSS) | Exploitation statusNot known exploited | FixYes | Affected productsysreptor | Published12/04/2025 | SeverityHigh |
CVE-2025-59945SysReptor Susceptible to Privilege Escalation by Authenticated Users | Exploitation statusPublic exploit | FixYes | Affected productsysreptor | Published09/27/2025 | SeverityHigh |
CVE-2024-36076 | Exploitation statusNot known exploited | FixNot confirmed | Affected productNot confirmed | Published05/19/2024 | SeverityHigh |