Security News > 2020 > June > Nearly 1,000 Vulnerabilities Found in Popular Open Source Projects in 2019

Nearly 1,000 Vulnerabilities Found in Popular Open Source Projects in 2019
2020-06-08 18:02

Nearly 1,000 vulnerabilities were found in popular open source projects in 2019, more than double compared to the previous year, according to a report published on Monday by risk management company RiskSense.

RiskSense has analyzed 54 open source projects in which nearly 2,700 vulnerabilities were reported between 2015 and March 2020.

For each of these pieces of software, 15 vulnerabilities were weaponized.

The company has also looked at how much it took for these vulnerabilities to be added to the National Vulnerability Database.

"Deserialization Issue, Code Injection, Error Handling Issues, and Container Errors were all seen trending in the wild. The fact that these issues are rare in open source projects is a positive sign for the security of open source code, but also serve as a reminder that when problems do pop in OSS, they can be attacked quite broadly."


News URL

http://feedproxy.google.com/~r/Securityweek/~3/5tHuDhC5Auk/nearly-1000-vulnerabilities-found-popular-open-source-projects-2019