Linuxfoundation
Linuxfoundation Osquery: vulnerabilidades y CVE
Linuxfoundation Osquery tiene 11 vulnerabilidades publicadas, 5 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE11
Últimos 12 meses5
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-46371 | Media (6.5) | 0.37% | — | 26 ago 2026 | Fleet is an open-source device management platform built on osquery. In versions up to and including 4.84.1, the Apple MDM commands listing endpoint (GET /api/v1/fleet/mdm/apple/commands) allowed an authenticated user… |
| CVE-2026-46370 | Media (6.5) | 0.37% | — | 26 ago 2026 | Fleet is an open-source device management platform built on osquery. In versions up to and including 4.84.1, the labels host-listing endpoint (GET /api/v1/fleet/labels/{id}/hosts) allowed an authenticated user with the… |
| CVE-2026-54001 | Alta (7) | 0.15% | — | 10 jul 2026 | osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. Prior to 5.23.1, on Windows, a local unprivileged attacker can cause a heap buffer out-of-bounds write if there is a query… |
| CVE-2026-54000 | Alta (7) | 0.15% | — | 10 jul 2026 | osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. Prior to 5.23.1, on Windows, a local unprivileged attacker can cause a heap buffer out-of-bounds write if there is a query… |
| CVE-2026-46388 | Media (4.4) | 0.13% | — | 10 jul 2026 | osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. Prior to 5.23.1, an unprivileged attacker can read the contents of an osquery file carve until the carve completes and the… |
| CVE-2025-27509 | Crítica (9.3) | 0.67% | — | 6 mar 2025 | fleetdm/fleet is an open source device management, built on osquery. In vulnerable versions of Fleet, an attacker could craft a specially-formed SAML response to forge authentication assertions, provision a new… |
| CVE-2020-26273 | Media (5.2) | 0.95% | — | 16 dic 2020 | osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. In osquery before version 4.6.0, by using sqlite's ATTACH verb, someone with administrative access to osquery can cause… |
| CVE-2020-11081 | Alta (8.2) | 0.59% | — | 10 jul 2020 | osquery before version 4.4.0 enables a privilege escalation vulnerability. If a Window system is configured with a PATH that contains a user-writable directory then a local user may write a zlib1.dll DLL, which osquery… |
| CVE-2020-1887 | Crítica (9.1) | 1.6% | — | 13 mar 2020 | Incorrect validation of the TLS SNI hostname in osquery versions after 2.9.0 and before 4.2.0 could allow an attacker to MITM osquery traffic in the absence of a configured root chain of trust. |
| CVE-2019-3567 | Alta (8.1) | 1.7% | — | 3 jun 2019 | In some configurations an attacker can inject a new executable path into the extensions.load file for osquery and hard link a parent folder of a malicious binary to a folder with known 'safe' permissions. Under those… |
| CVE-2018-6336 | Alta (7.8) | 0.49% | — | 31 dic 2018 | An issue was discovered in osquery. A maliciously crafted Universal/fat binary can evade third-party code signing checks. By not completing full inspection of the Universal/fat binary, the user of the third-party tool… |