Products: 1
Vulnerabilities: 5
Known Exploited: 0
0
Critical Level Threats
2
High Level Threats
3
Medium Level Threats
0
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2025-71385
Netdata < 2.3.1 - Reflected Cross-Site Scripting via love Parameter in ilove.svg Endpoint
Last Modified: Jul 06, 2026
Published: Jul 02, 2026
CVE-2024-32019
ndsudo: local privilege escalation via untrusted search path
Last Modified: Apr 15, 2026
Published: Apr 12, 2024
CVE-2023-22497
Netdata is vulnerable to improper authentication
Last Modified: Mar 10, 2025
Published: Jan 14, 2023
CVE-2023-22496
Netdata vulnerable to command injection
Last Modified: Mar 10, 2025
Published: Jan 14, 2023
CVE-2019-9834
The Netdata web application through 1.13.0 allows remote attackers to inject their own malicious HTML code into an imported snapshot, aka HTML Injection. Successful exploitation will allow attacker-supplied HTML to run in the context of the affected browser, potentially allowing the attacker to steal authentication credentials or to control how the site is rendered to the user. NOTE: the vendor disputes the risk because there is a clear warning next to the button for importing a snapshot
Last Modified: Nov 21, 2024
Published: Mar 15, 2019
Items Per Page
