rapid7 Velociraptor Vulnerabilities
Rapid7 Velociraptor vulnerabilities.
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Improper Access Control in Velociraptor's VQL Shell Feature
CVE-2025-0914Rapid7Velociraptor3.8LOWVelociraptor Installer Vulnerability Allows Local Users to Execute Arbitrary Code
CVE-2024-10526Rapid7VelociraptorRapid7 Velociraptor Reflected XSS
CVE-2023-5950Rapid7Velociraptor8.6HIGHVelociraptor crashes while parsing some malformed PE or OLE files.
CVE-2023-2226Rapid7Velociraptor3.3LOWRapid7 Velociraptor directory traversal in client ID parameter
CVE-2023-0290Rapid7Velociraptor4.3MEDIUMInsufficient permission check in the VQL copy() function
CVE-2023-0242Rapid7Velociraptor8.8HIGHVelociraptor Client ID Spoofing
CVE-2022-35629Rapid7Velociraptor5.4MEDIUMUnsafe HTML Injection in Artifact Collection Report
CVE-2022-35630Rapid7Velociraptor6.1MEDIUMFilesystem race on temporary files
CVE-2022-35631Rapid7Velociraptor5.5MEDIUMXSS in User Interface
CVE-2022-35632Rapid7Velociraptor4.8MEDIUMRapid7 Velociraptor Notebooks Authenticated Persistent XSS
CVE-2021-3619Rapid7Velociraptor3.5LOW
27 February 2025
7 November 2024
6 November 2023
21 April 2023
18 January 2023
29 July 2022
21 June 2021
No more vulnerabilities to load.