Onosproject

    Dashboard / Vendors

    Products: 3
    Vulnerabilities: 17
    Known Exploited: 0
    4
    Critical Level Threats
    8
    High Level Threats
    5
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-48809

    An issue in Open Networking Foundations sdran-in-a-box v.1.4.3 and onos-a1t v.0.2.3 allows a remote attacker to cause a denial of service via the onos-a1t component of the sdran-in-a-box, specifically the DeleteWatcher function.

    Last Modified: Dec 31, 2025
    Published: Nov 04, 2024

    CVE-2023-52726

    Open Networking Foundation SD-RAN ONOS onos-ric-sdk-go 0.8.12 allows infinite repetition of the processing of an error (in the Subscribe function implementation for the subscribed indication stream).

    Last Modified: Jul 14, 2025
    Published: Apr 29, 2024

    CVE-2024-34049

    Open Networking Foundation SD-RAN Rimedo rimedo-ts 0.1.1 has a slice bounds out-of-range panic in "return plmnIdString[0:3], plmnIdString[3:]" in reader.go.

    Last Modified: May 27, 2025
    Published: Apr 29, 2024

    CVE-2024-34050

    Open Networking Foundation SD-RAN Rimedo rimedo-ts 0.1.1 has a slice bounds out-of-range panic in "return uint64(b[2])<<16 | uint64(b[1])<<8 | uint64(b[0])" in reader.go.

    Last Modified: Jun 27, 2025
    Published: Apr 29, 2024

    CVE-2023-30093

    A cross-site scripting (XSS) vulnerability in Open Networking Foundation ONOS from version v1.9.0 to v2.7.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the url parameter of the API documentation dashboard.

    Last Modified: Jan 29, 2025
    Published: May 04, 2023
    Items Per Page
    Onosproject Vulnerabilities & Security CVEs | CVE-DB