Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Wazuh — Vulnerabilities & Security Advisories 48

Browse all 48 CVE security advisories affecting Wazuh. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Wazuh is an open-source security platform primarily utilized for intrusion detection, log data analysis, and compliance monitoring across diverse infrastructure environments. Its architecture integrates host-based agents with a central server to aggregate telemetry, enabling organizations to detect anomalies and maintain regulatory adherence. Historically, the software has been associated with vulnerabilities such as remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from input validation errors or improper access controls within its web interface and API components. With thirty-nine recorded CVEs, these issues highlight risks related to authentication bypasses and insecure default configurations. While no catastrophic breaches have been publicly attributed directly to Wazuh itself, the frequency of these CVEs underscores the importance of rigorous patch management and secure deployment practices to mitigate potential exploitation vectors in enterprise security operations.

Found 1 results / 48Clear Filters
High2026-08-01
Enrolled Agent Can Spoof Cluster Attribution in Inventory Sync Documents · Advisory · wazuh/wazuh · GitHub
Critical2026-08-01
GitHub Actions Shell Injection via Fork Pull Request · Advisory · wazuh/wazuh · GitHub
Critical2026-07-21
Wazuh Cluster DAPI: arbitrary callable resolution + RBAC context injection enables cluster node to execute privileged fu
Medium2026-07-17
Heap-based Buffer Overflow in syscheck Registry Wildcard Expansion (LPE / DoS) · Advisory · wazuh/wazuh · GitHub
Medium2026-07-17
size_t underflow in msgs.c ReadSecMSG causes remoted DoS and potential heap overflow via crafted agent message — Wazuh 4
HighCVE-2025-393592026-07-17
Unauthenticated Path Traversal in Wazuh authd via Agent Group Name · Advisory · wazuh/wazuh · GitHub
High2026-07-17
Heap buffer overflow in wazuh-analysisd via rootcheck event parsing · Advisory · wazuh/wazuh · GitHub
High2026-07-17
Unauthenticated cluster packet length leads to uncontrolled memory allocation (remote DoS) · Advisory · wazuh/wazuh · Gi
Critical2026-07-15
Enrolled agent can smuggle arbitrary OpenSearch _bulk operations via DataValue.index · Advisory · wazuh/wazuh · GitHub
High2026-07-08
NULL dereference in Wazuh inventory_sync FlatBuffer DataValue handling allows enrolled agent to crash wazuh-modulesd · A
High2026-04-30
Multiple Heap-based NULL WRITE Buffer Underflows in parse_uname_string() · Advisory · wazuh/wazuh · GitHub
MediumCVE-2026-262062026-04-30
API brute-force protection bypass via race condition in login attempt tracking · Advisory · wazuh/wazuh · GitHub
MediumCVE-2026-282212026-04-30
Pre-auth stack-based buffer overflow in wazuh-remoted print_hex_string() due to signed char promotion on x86_64 · Adviso
CriticalCVE-2026-308932026-04-30
Wazuh cluster sync path traversal in decompress_files() enables arbitrary file write and code execution from authenticat
Medium2026-04-30
Heap-based NULL WRITE Buffer Underflow in GetAlertData · Advisory · wazuh/wazuh · GitHub
High2026-04-30
Release Wazuh v4.14.4 · wazuh/wazuh · GitHub
MediumCVE-2025-644832025-11-22
Improper Access Control in Agent Enrollment Endpoint · Advisory · wazuh/wazuh-dashboard-plugins · GitHub
HighCVE-2023-424632025-11-19
wazuh-logcollector integer underflow local privilege escalation · Advisory · wazuh/wazuh · GitHub
CriticalCVE-2024-12432025-06-12
Remote code execution and Local privilege escalation due to NetNTLMv2 hash theft · Advisory · wazuh/wazuh · GitHub

Showing up to 20 recent security advisories. View all →

This page lists every published CVE security advisory associated with Wazuh. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.