The probability is the direct output of the EPSS model, and conveys an overall sense of the threat of exploitation in the wild. The percentile measures the EPSS probability relative to all known EPSS scores. Note: This data is updated daily, relying on the latest available EPSS model version. Check out the EPSS documentation for more details.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Improper Authorization vulnerabilities in an interactive lesson.
Start learningUpgrade @tauri-apps/plugin-updater to version 2.12.0 or higher.
@tauri-apps/plugin-updater is a 
Affected versions of this package are vulnerable to Improper Authorization via the allowDowngrades option exposed to the frontend JavaScript API, which allowed any web content running inside a Tauri application to request installation of an older, previously released version of the application. Because the updater only verifies the cryptographic signature of the downloaded artifact and not whether the version is newer than the currently running one, a malicious or compromised web page could trigger a downgrade to a version known to contain vulnerabilities. The fix removes the allowDowngrades option from the frontend API and moves control of this behaviour exclusively to the application-level configuration, where it cannot be influenced by untrusted web content.