Loading...
Loading...
The software update mechanism as used in Bare Bones Software Yojimbo before 4.0, TextWrangler before 4.5.3, and BBEdit before 10.5.5 does not properly download and verify updates before installation, which allows attackers to perform "tampering or corruption" of the updates.
December 31, 2013
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2013-3667
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.