- What is the KNIME CNA?
- KNIME is a CVE Numbering Authority (CNA) — an organization authorized to assign CVE IDs to vulnerabilities in its scope. It has published 12 CVE records since 2022.
- How many CVEs has KNIME published?
- KNIME has published 12 CVE records, including 7 in the last two years.
- What is KNIME's CVE data quality grade?
- RadicalNotion.AI grades KNIME's CVE data quality as A, with an overall completeness score of 100%. This reflects how consistently its CVE records include vendor (100%), product (100%), CVSS (100%), and CWE (100%) information.
- What products does KNIME publish CVEs for?
- KNIME most frequently publishes CVEs for KNIME Business Hub, business hub, KNIME Analytics Platform, KNIME Server.
- Which vendors does KNIME cover?
- KNIME publishes CVEs across 1 distinct vendors, most often KNIME.
- Is KNIME actively publishing CVEs?
- KNIME is currently active, based on 7 CVEs in the last two years.
- What is the average severity of KNIME's CVEs?
- The average CVSS base score across KNIME's scored CVEs is 5.9.
- Are any of KNIME's CVEs in CISA's Known Exploited Vulnerabilities catalog?
- No. None of KNIME's CVEs are currently listed in CISA's Known Exploited Vulnerabilities (KEV) catalog.
- What are the most common weakness types in KNIME's CVEs?
- KNIME's CVEs most often map to these CWE weakness types: CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')), CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-306 (Missing Authentication for Critical Function), CWE-497 (Exposure of Sensitive System Information to an Unauthorized Control Sphere).
- How does KNIME rank among CNAs?
- By total CVE volume, KNIME ranks #286 of 370 CNAs, and it reports more complete CVE records than 60% of all CNAs.