Products: 1
    Vulnerabilities: 25
    Known Exploited: 0
    7
    Critical Level Threats
    12
    High Level Threats
    5
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-43904

    In SchedMD Slurm before 24.11.5, 24.05.8, and 23.11.11, the accounting system can allow a Coordinator to promote a user to Administrator.

    Last Modified: Apr 15, 2026
    Published: Jan 16, 2026

    CVE-2024-48936

    SchedMD Slurm before 24.05.4 has Incorrect Authorization. A mistake in authentication handling in stepmgr could permit an attacker to execute processes under other users' jobs. This is limited to jobs explicitly running with --stepmgr, or on systems that have globally enabled stepmgr via SlurmctldParameters=enable_stepmgr in their configuration.

    Last Modified: Apr 17, 2025
    Published: Oct 28, 2024

    CVE-2023-49934

    An issue was discovered in SchedMD Slurm 23.11.x. There is SQL Injection against the SlurmDBD database. The fixed version is 23.11.1.

    Last Modified: Nov 04, 2025
    Published: Dec 14, 2023

    CVE-2023-49936

    An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. A NULL pointer dereference leads to denial of service. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.

    Last Modified: Nov 04, 2025
    Published: Dec 14, 2023

    CVE-2023-49933

    An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. There is Improper Enforcement of Message Integrity During Transmission in a Communication Channel. This allows attackers to modify RPC traffic in a way that bypasses message hash checks. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.

    Last Modified: Nov 04, 2025
    Published: Dec 14, 2023
    Items Per Page
    Schedmd Vulnerabilities & Security CVEs | CVE-DB