Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. Conceal/
  3. Conceal Secure SaaS Access

Conceal Secure SaaS Access

AI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Secure coding rating: 0/100How this score is computedA product with no known CVEs starts at a neutral score and climbs the longer it goes without one; a product with known CVEs is penalized by severity instead. This one has 11 known CVEs (vendor-level match — see the CVE list below) and is tracked as ~39 days old in our catalog (a stand-in for real release date, which we don't track). The platform admin controls the formula's weights.

Browser-native platform securing SaaS access with zero trust, DLP, and threat prevention.

by Conceal · conceal.io · source ↗

Known CVEs (11)About this listSourced from the public NVD database, matched by vendor name. Shown here at the vendor level — we don't track per-product/version data, so a listed CVE may affect a different product from this vendor, not necessarily this one. “New” means published within the last 30 days. “Actively exploited” means CISA's Known Exploited Vulnerabilities (KEV) catalog confirms real-world exploitation, not just a theoretical severity score.

RSS ⇢
  • CVE-2026-1606 ↗MEDIUM 4.32026

    GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.8 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under certain conditions could have allowed an authentic…

  • CVE-2026-9053 ↗2026

    Mothra would respect a default value given by a website for HTML file upload forms. An attacker could craft a website with a malicious default file path, and then conceal this form element.

  • CVE-2026-35442 ↗HIGH 8.12026

    Directus is a real-time API and App dashboard for managing SQL database content. Prior to 11.17.0, aggregate functions (min, max) applied to fields with the conceal special type incorrectly return raw…

  • CVE-2025-64106 ↗HIGH 8.82025

    Cursor is a code editor built for programming with AI. In versions 1.7.28 and below, an input validation flaw in Cursor's MCP server installation enables specially crafted deep-links to bypass the sta…

  • CVE-2025-5986 ↗MEDIUM 6.52025

    A crafted HTML email using mailbox:/// links can trigger automatic, unsolicited downloads of .pdf files to the user's desktop or home directory without prompting, even if auto-saving is disabled. This…

  • CVE-2025-48056 ↗MEDIUM 5.32025

    Hubble is a fully distributed networking and security observability platform for cloud native workloads. Prior to version 1.17.2, a network attacker could inject malicious control characters into Hubb…

  • CVE-2023-36462 ↗MEDIUM 5.42023

    Mastodon is a free, open-source social network server based on ActivityPub. Starting in version 2.6.0 and prior to versions 3.5.9, 4.0.5, and 4.1.3, an attacker can craft a verified profile link using…

  • CVE-2022-24695 ↗MEDIUM 4.32023

    Bluetooth Classic in Bluetooth Core Specification through 5.3 does not properly conceal device information for Bluetooth transceivers in Non-Discoverable mode. By conducting an efficient over-the-air …

  • CVE-2020-9916 ↗MEDIUM 5.32020

    A URL Unicode encoding issue was addressed with improved state management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iClou…

  • CVE-2015-7266 ↗HIGH 7.52018

    The Interactive Advertising Bureau (IAB) OpenRTB 2.3 protocol implementation might allow remote attackers to conceal the status of ad transactions and potentially compromise bid integrity by leveragin…

  • CVE-2002-1875 ↗MEDIUM 4.62002

    Entercept Agent 2.5 agent for Windows, released before May 21, 2002, allows local administrative users to obtain the entercept agent password, which could allow the administrators to log on as the ent…

Materials

0

No datasheets, whitepapers, case studies, videos, or demos linked yet.

Other Enterprise Browser Security products

see all →
  • Absolute Secure Web Gateway · Absolute
  • Apozy Airlock Browser Defense Platform · Apozy
  • Apozy Browser Security · Apozy
  • Atakama Browser Security Platform · Atakama
  • Authentic8 Silo Web Isolation Platform · Authentic8
  • Authentic8 Silo Workspace · Authentic8
  • Authentic8 Silo for Research · Authentic8
  • BankVault SafeWindow · BankVault