All 9 CVE vulnerabilities found in netmaker, with AI-generated Chinese analysis, references, and POCs.
Vendor: gravitl
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-29196 | Netmaker: Service User with Network Access Can Access config files with WireGuard Private Keys CWE-863 | 6.5 | - | 2026-03-07 |
| CVE-2026-29195 | Netmaker: Privilege Escalation from Admin to Super-Admin via User Update CWE-863 | 7.2 | - | 2026-03-07 |
| CVE-2026-29194 | Netmaker: Insufficient Authorization in Host Token Verification CWE-863 | 8.8 | - | 2026-03-07 |
| CVE-2026-29771 | Netmaker: Denial of Service via Server Shutdown Endpoint CWE-404 | 6.5 | - | 2026-03-07 |
| CVE-2023-32079 | Netmaker Privilige Escalation Vulnerability CWE-915 | 8.8 | High | 2023-08-24 |
| CVE-2023-32078 | Netmaker IDOR Vulnerability Allows User to Update Other User's Password CWE-639 | 7.5 | High | 2023-08-24 |
| CVE-2023-32077 | Netmaker has Hardcoded DNS Secret Key CWE-321 | 7.5 | High | 2023-08-24 |
| CVE-2022-36110 | Netmaker vulnerable to Insufficient Granularity of Access Control CWE-1220 | 8.8 | High | 2022-09-09 |
| CVE-2022-23650 | Use of Hard-coded Cryptographic Key in Netmaker CWE-321 | 7.2 | High | 2022-02-18 |
All 9 known CVE vulnerabilities affecting netmaker with full Chinese analysis, references, and POCs where available.