Asterisk

    Dashboard / Vendors

    Products: 15
    Vulnerabilities: 65
    Known Exploited: 0
    5
    Critical Level Threats
    24
    High Level Threats
    30
    Medium Level Threats
    6
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-23741

    ast_coredumper running as root sources ast_debug_tools.conf from /etc/asterisk; potentially leading to privilege escalation

    Last Modified: Apr 17, 2026
    Published: Feb 06, 2026

    CVE-2026-23740

    Asterisk vulnerable to potential privilege escalation

    Last Modified: Apr 17, 2026
    Published: Feb 06, 2026

    CVE-2026-23739

    Asterisk xml.c uses unsafe XML_PARSE_NOENT leading to potential XXE Injection

    Last Modified: Apr 17, 2026
    Published: Feb 06, 2026

    CVE-2026-23738

    The Asterisk embedded web server 's /httpstatus page echos user supplied values(cookie and query string) without sanitization

    Last Modified: Apr 17, 2026
    Published: Feb 06, 2026

    CVE-2025-69205

    In µURU, a Specially Crafted Federation Name Allows Dialplan Injection

    Last Modified: Apr 15, 2026
    Published: Dec 29, 2025
    Items Per Page