Skip to main content

Vendor/product archive

rapid7 / velociraptor CVEs

Beta · best-effort

15 CVEs tagged to rapid7 / velociraptor0 Critical, 4 High, 9 Medium, 2 Low, 0 Unrated.

CVE-2026-7573

Published May 6, 2026

An authorization bypass (CWE-639) in the GetUserRoles gRPC API endpoint in Velocidex Velociraptor below version 0.76.5 allows any authenticated low-privilege user to retrieve the…

CVSS 5.0 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-6290

Published Apr 15, 2026

Velociraptor versions prior to 0.76.3 contain a vulnerability in the query() plugin which allows access to all orgs with the user's current ACL token. This allows an authenticated…

CVSS 8.0 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-5329

Published Apr 9, 2026

Rapid7 Velociraptor versions prior to 0.76.2 contain an improper input validation vulnerability in the client monitoring message handler on the Velociraptor server (primarily Linu…

CVSS 8.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-14728

Published Dec 29, 2025

Rapid7 Velociraptor versions before 0.75.6 contain a directory traversal issue on Linux servers that allows a rogue client to upload a file which is written outside the datastore…

CVSS 6.8 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-6264

Published Jun 20, 2025

Velociraptor allows collection of VQL queries packaged into Artifacts from endpoints. These artifacts can be used to do anything and usually run with elevated permissions.  To lim…

CVSS 5.5 · Medium
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort

CVE-2023-5950

Published Nov 6, 2023

Rapid7 Velociraptor versions prior to 0.7.0-4 suffer from a reflected cross site scripting vulnerability. This vulnerability allows attackers to inject JS into the error path, pot…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2023-2226

Published Apr 21, 2023

Due to insufficient validation in the PE and OLE parsers in Rapid7's Velociraptor versions earlier than 0.6.8 allows attacker to crash Velociraptor during parsing of maliciously m…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-0290

Published Jan 18, 2023

Rapid7 Velociraptor did not properly sanitize the client ID parameter to the CreateCollection API, allowing a directory traversal in where the collection task could be written. It…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-0242

Published Jan 18, 2023

Rapid7 Velociraptor allows users to be created with different privileges on the server. Administrators are generally allowed to run any command on the server including writing arb…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-35632

Published Jul 29, 2022

The Velociraptor GUI contains an editor suggestion feature that can display the description field of a VQL function, plugin or artifact. This field was not properly sanitized and…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-35630

Published Jul 29, 2022

A cross-site scripting (XSS) issue in generating a collection report made it possible for malicious clients to inject JavaScript code into the static HTML file. This issue was res…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-35629

Published Jul 29, 2022

Due to a bug in the handling of the communication between the client and server, it was possible for one client, already registered with their own client ID, to send messages to t…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-3619

Published Jul 22, 2021

Rapid7 Velociraptor 0.5.9 and prior is vulnerable to a post-authentication persistent cross-site scripting (XSS) issue, where an authenticated user could abuse MIME filetype sniff…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort
Showing 1-15 of 15 CVEsPage 1 of 1