CrowdStrike Holdings, Inc.

First CVE: Feb 12, 2025Active for: 1 year
4
CVEs Published
More CVEs Published than 12% of tracked CNAs
2.0
Avg CVEs / Year
More Avg CVEs / Year than 11% of tracked CNAs
7.5
Avg CVSS Score
Higher Avg CVSS Score than 68% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%

Self-Reporting Analysis

Of all the CVEs published by CrowdStrike Holdings, Inc. as a CNA, 0.0% affect products that CrowdStrike Holdings, Inc. develops as a vendor.

100.0%
Self-reported: 0Third-party: 4

Of all the CVEs published that affect products developed by CrowdStrike Holdings, Inc., 0.0% are self-published by CrowdStrike Holdings, Inc. as a CNA.

100.0%
Self-published: 0Published by other CNAs: 1

Trends Over Time

The number and severity of CVEs published by CrowdStrike Holdings, Inc. over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 12, 2025
17 months ago
Most Recent CVE
Apr 21, 2026
94 days ago

Top CVEs

All CVEs published by CrowdStrike Holdings, Inc. as a CNA, regardless of affected vendor or product.

4 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CrowdStrike has released security updates to address a critical unauthenticated path traversal vulnerability (CVE-2026-40050) in LogScale. This vulnerability only requires mitigati
Apr 21, 20269.838NONO
A logic error exists in the Falcon sensor for Windows that could allow an attacker, with the prior ability to execute code on a host, to delete arbitrary files. CrowdStrike release
Oct 8, 20256.526NONO
CrowdStrike uses industry-standard TLS (transport layer security) to secure communications from the Falcon sensor to the CrowdStrike cloud. CrowdStrike has identified a validation
Feb 12, 20258.126NONO
A race condition exists in the Falcon sensor for Windows that could allow an attacker, with the prior ability to execute code on a host, to delete arbitrary files. CrowdStrike rele
Oct 8, 20255.618NONO

CVE Severity & Scoring

Severity distribution of CVEs published by this CNA4 CVEs
Severity distribution among all CVEs352,231 CVEs
MediumHighCritical
Attack Vector
Local2 (50.0%)
Network2 (50.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (50.0%)
High2 (50.0%)
Unknown0 (0.0%)
User Interaction
None4 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low2 (50.0%)
High0 (0.0%)
None2 (50.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this cna scope (4 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID published by CrowdStrike Holdings, Inc. as a CNA.

Media Mentions

Media articles that mention a CVE ID published by CrowdStrike Holdings, Inc. as a CNA — matched by CVE ID, not by organization name.

Top CWEs