Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. Flare/
  3. Flare PRISM

Flare PRISM

AI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Secure coding rating: 0/100How this score is computedA product with no known CVEs starts at a neutral score and climbs the longer it goes without one; a product with known CVEs is penalized by severity instead. This one has 12 known CVEs (vendor-level match — see the CVE list below) and is tracked as ~39 days old in our catalog (a stand-in for real release date, which we don't track). The platform admin controls the formula's weights.

Visual interface for exploring threat intelligence data sources and datasets

by Flare · flare.io · source ↗

Known CVEs (12)About this listSourced from the public NVD database, matched by vendor name. Shown here at the vendor level — we don't track per-product/version data, so a listed CVE may affect a different product from this vendor, not necessarily this one. “New” means published within the last 30 days. “Actively exploited” means CISA's Known Exploited Vulnerabilities (KEV) catalog confirms real-world exploitation, not just a theoretical severity score.

RSS ⇢
  • CVE-2026-24204 ↗MEDIUM 6.52026

    NVIDIA Flare SDK contains a vulnerability where an Attacker may cause an Improper Input Validation by path traversing. A successful exploit of this vulnerability may lead to information disclosure.

  • CVE-2026-24186 ↗HIGH 8.82026

    NVIDIA FLARE SDK contains a vulnerability in FOBS, where an attacker may cause deserialization of untrusted data by sending a malicious FOBS- encoded message. A successful exploit of this vulnerabili…

  • CVE-2026-30942 ↗MEDIUM 6.52026

    Flare is a Next.js-based, self-hostable file sharing platform that integrates with screenshot tools. Prior to 1.7.3, an authenticated path traversal vulnerability in /api/avatars/[filename] allows any…

  • CVE-2026-30231 ↗MEDIUM 5.32026

    Flare is a Next.js-based, self-hostable file sharing platform that integrates with screenshot tools. Prior to version 1.7.2, the raw and direct file routes only block unauthenticated users from access…

  • CVE-2026-30230 ↗HIGH 7.52026

    Flare is a Next.js-based, self-hostable file sharing platform that integrates with screenshot tools. Prior to version 1.7.2, the thumbnail endpoint does not validate the password for password‑protecte…

  • CVE-2026-26993 ↗MEDIUM 4.62026

    Flare is a Next.js-based, self-hostable file sharing platform that integrates with screenshot tools. Versions 1.7.0 and below allow users to upload files without proper content validation or sanitizat…

  • CVE-2025-65397 ↗MEDIUM 6.82026

    An insecure authentication mechanism in the safe_exec.sh startup script of Blurams Flare Camera version 24.1114.151.929 and earlier allows an attacker with physical access to the device to execute arb…

  • CVE-2025-65396 ↗MEDIUM 6.12026

    A vulnerability in the boot process of Blurams Flare Camera version 24.1114.151.929 and earlier allows a physically proximate attacker to hijack the boot mechanism and gain a bootloader shell via the …

  • CVE-2022-30278 ↗MEDIUM 6.12022

    A vulnerability in Black Duck Hub’s embedded MadCap Flare documentation files could allow an unauthenticated remote attacker to conduct a cross-site scripting attack. The vulnerability is due to impro…

  • CVE-2022-21822 ↗HIGH 7.52022

    NVIDIA FLARE contains a vulnerability in the admin interface, where an un-authorized attacker can cause Allocation of Resources Without Limits or Throttling, which may lead to cause system unavailable…

  • CVE-2019-15377 ↗MEDIUM 5.52019

    The Cherry Flare S7 Android device with a build fingerprint of Cherry_Mobile/Flare_S7_Deluxe/Flare_S7_Deluxe:8.1.0/O11019/1533920920:user/release-keys contains a pre-installed app with a package name …

  • CVE-2018-11074 ↗MEDIUM 6.12018

    RSA Authentication Manager versions prior to 8.3 P3 are affected by a DOM-based cross-site scripting vulnerability which exists in its embedded MadCap Flare Help files. A remote unauthenticated attack…

Materials

0

No datasheets, whitepapers, case studies, videos, or demos linked yet.

Other Threat Intelligence products

see all →
  • AI SPERA Criminal IP · AI SPERA Inc.
  • Abusix Guardian · Abusix
  • Abusix Guardian Intel · Abusix
  • Abusix Threat Intelligence · Abusix
  • Adversary Investigation · Censys
  • Analyst1 Orchestrated Threat Intelligence Platform · Analyst1
  • Anomali Agentic AI · Anomali
  • Anomali Agentic SOC Platform · Anomali