Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. Logpoint/
  3. Logpoint SOAR & Automation

Logpoint SOAR & Automation

AI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Secure coding rating: 0/100How this score is computedA product with no known CVEs starts at a neutral score and climbs the longer it goes without one; a product with known CVEs is penalized by severity instead. This one has 27 known CVEs (vendor-level match — see the CVE list below) and is tracked as ~39 days old in our catalog (a stand-in for real release date, which we don't track). The platform admin controls the formula's weights.

SOAR platform for automated alert triage, investigation, and response

by Logpoint · logpoint.com · source ↗

Known CVEs (27)About this listSourced from the public NVD database, matched by vendor name. Shown here at the vendor level — we don't track per-product/version data, so a listed CVE may affect a different product from this vendor, not necessarily this one. “New” means published within the last 30 days. “Actively exploited” means CISA's Known Exploited Vulnerabilities (KEV) catalog confirms real-world exploitation, not just a theoretical severity score.

RSS ⇢
  • CVE-2026-35548 ↗HIGH 8.52026

    An issue was discovered in guardsix (formerly Logpoint) ODBC Enrichment Plugins before 5.2.1 (5.2.1 is used in guardsix 7.9.0.0). A logic flaw allowed stored database credentials to be reused after mo…

  • CVE-2025-66361 ↗MEDIUM 6.52025

    An issue was discovered in Logpoint before 7.7.0. Sensitive information is exposed in System Processes for an extended period during high CPU load.

  • CVE-2025-66360 ↗HIGH 8.82025

    An issue was discovered in Logpoint before 7.7.0. An improperly configured access control policy exposes sensitive Logpoint internal service (Redis) information to li-admin users. This can lead to pri…

  • CVE-2025-66359 ↗HIGH 8.52025

    An issue was discovered in Logpoint before 7.7.0. Insufficient input validation and a lack of output escaping in multiple components leads to a cross-site scripting (XSS) vulnerability.

  • CVE-2025-54317 ↗HIGH 8.42025

    An issue was discovered in Logpoint before 7.6.0. An attacker with operator privileges can exploit a path traversal vulnerability when creating a Layout Template, which can lead to remote code executi…

  • CVE-2025-54316 ↗MEDIUM 4.92025

    An issue was discovered in Logpoint before 7.6.0. When creating reports, attackers can create custom Jinja templates that chained built-in filter functions to generate XSS payloads. These payloads can…

  • CVE-2025-26789 ↗2025

    An issue was discovered in Logpoint AgentX before 1.5.0. A vulnerability caused by limited access controls allowed li-admin users to access sensitive information about AgentX Manager in a Logpoint dep…

  • CVE-2024-56087 ↗MEDIUM 5.92024

    An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads while querying Search Template Dashboard. These are executed, leading to Server-Side Template Injection.

  • CVE-2024-56086 ↗HIGH 7.12024

    An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads in Report Templates. These are executed when the backup process is initiated, leading to Remote Code Execution…

  • CVE-2024-56085 ↗MEDIUM 5.92024

    An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads while creating Search Template Dashboard. These are executed, leading to Server-Side Template Injection.

  • CVE-2024-56084 ↗HIGH 7.12024

    An issue was discovered in Logpoint UniversalNormalizer before 5.7.0. Authenticated users can inject payloads while creating Universal Normalizer. These are executed, leading to Remote Code Execution.

  • CVE-2024-48954 ↗MEDIUM 6.42024

    An issue was discovered in Logpoint before 7.5.0. Unvalidated input during the EventHub Collector setup by an authenticated user leads to Remote Code execution.

  • CVE-2024-48953 ↗HIGH 7.52024

    An issue was discovered in Logpoint before 7.5.0. Endpoints for creating, editing, or deleting third-party authentication modules lacked proper authorization checks. This allowed unauthenticated users…

  • CVE-2024-48952 ↗MEDIUM 6.42024

    An issue was discovered in Logpoint before 7.5.0. SOAR uses a static JWT secret key to generate tokens that allow access to SOAR API endpoints without authentication. This static key vulnerability ena…

  • CVE-2024-48951 ↗HIGH 7.52024

    An issue was discovered in Logpoint before 7.5.0. Server-Side Request Forgery (SSRF) on SOAR can be used to leak Logpoint's API Token leading to authentication bypass.

  • CVE-2024-48950 ↗HIGH 7.52024

    An issue was discovered in Logpoint before 7.5.0. An endpoint used by Distributed Logpoint Setup was exposed, allowing unauthenticated attackers to bypass CSRF protections and authentication.

  • CVE-2024-36383 ↗MEDIUM 5.32024

    An issue was discovered in Logpoint SAML Authentication before 6.0.3. An attacker can place a crafted filename in the state field of a SAML SSO-URL response, and the file corresponding to this filenam…

  • CVE-2024-33860 ↗MEDIUM 6.52024

    An issue was discovered in Logpoint before 7.4.0. It allows Local File Inclusion (LFI) when an arbitrary File Path is used within the File System Collector. The content of the file specified can be vi…

  • CVE-2024-33859 ↗MEDIUM 6.12024

    An issue was discovered in Logpoint before 7.4.0. HTML code sent through logs wasn't being escaped in the "Interesting Field" Web UI, leading to XSS.

  • CVE-2024-33858 ↗MEDIUM 5.32024

    An issue was discovered in Logpoint before 7.4.0. A path injection vulnerability is seen while adding a CSV enrichment source. The source_name parameter could be changed to an absolute path; this will…

  • …and 7 more

Materials

0

No datasheets, whitepapers, case studies, videos, or demos linked yet.

Other Security Orchestration, Automation & Response (SOAR) products

see all →
  • 7AI Platform · 7AI
  • AI EdgeLabs AI-Generated Playbooks · AI EdgeLabs
  • AIStrike BlueDome · AiStrike
  • ASPIA Infotech Security Workflow · ASPIA Infotech Pvt. Ltd.
  • Abusix Guardian Ops · Abusix
  • Agentic AI AR2™ · BluSapphire Cyber Systems Pvt Limited
  • Agentic Security Automation Platform · Blink Ops
  • Agents · Tines