Skip to content
COOEY

FAIL › dossier

Sense

PRODUCT

· dossier confidence 75%

Senseonics Holdings, a medical technology company, has experienced multiple critical remote code execution (RCE) vulnerabilities in its Qlik Sense platform, highlighting significant security weaknesses and a need for improved security awareness and training.

PROFILE
CategoryMedical TechnologyWhat they doSenseonics Holdings, Inc. develops and manufactures continuous glucose monitoring (CGM) systems for people with diabetes. Their products include Eversense, Eversense XL, Eversense E3, and Eversense 365, which are implantable.SizeSmall CapOwnershippublic Websitehttps://stockanalysis.com/stocks/sens/ ↗
SECURITY POSTURE

Senseonics has demonstrated a history of critical vulnerabilities in its Qlik Sense platform, indicating a need for improved security practices and patching processes.

Notable failures
  • CVE-2023-48365 (critical RCE)
  • CVE-2023-41265 (critical RCE)
  • CVE-2023-41266 (critical path traversal)
Patterns: Critical RCE vulnerabilities in Qlik Sense; Lack of timely patching
FAILURE HISTORY · 3
DATEEVENTSEVSUMMARY
2025-01-13 CVE-2023-48365 critical Qlik Sense HTTP tunneling vulnerability allows privilege escalation and arbitrary HTTP requests on the backend server.
2023-12-07 CVE-2023-41265 critical Qlik Sense HTTP tunneling vulnerability allows privilege escalation and arbitrary HTTP requests on the backend server.
2023-12-07 CVE-2023-41266 critical Qlik Sense path traversal flaw lets unauthenticated attackers create anonymous sessions to hit unauthorized endpoints.
Open questions: What specific security awareness and training programs are being implemented? · What measures are being taken to prevent similar vulnerabilities in the future?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-03 03:54:53.610781+00:00