Wind River Systems Inc.

First CVE: Mar 21, 2025Active for: 1 year
3
CVEs Published
More CVEs Published than 9% of tracked CNAs
3.0
Avg CVEs / Year
More Avg CVEs / Year than 19% of tracked CNAs
5.8
Avg CVSS Score
Higher Avg CVSS Score than 6% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%

Self-Reporting Analysis

Of all the CVEs published by Wind River Systems Inc. as a CNA, 0.0% affect products that Wind River Systems Inc. develops as a vendor.

100.0%
Self-reported: 0Third-party: 3

Of all the CVEs published that affect products developed by Wind River Systems Inc., 0.0% are self-published by Wind River Systems Inc. as a CNA.

100.0%
Self-published: 0Published by other CNAs: 48

Trends Over Time

The number and severity of CVEs published by Wind River Systems Inc. over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 21, 2025
16 months ago
Most Recent CVE
Sep 18, 2025
309 days ago

Top CVEs

All CVEs published by Wind River Systems Inc. as a CNA, regardless of affected vendor or product.

3 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
A crafted system call argument can cause memory corruption.
Sep 18, 20256.722NONO
Under heavy system utilization a random race condition can occur during authentication or token refresh operation. This flaw allows one user to be granted a token intended for anot
Sep 11, 20256.020NONO
: Uncontrolled Resource Consumption vulnerability in Wind River Systems VxWorks 7 on VxWorks allows Excessive Allocation.   Specifically crafted USB packets may lead to the system
Mar 21, 20254.616NONO

CVE Severity & Scoring

Severity distribution of CVEs published by this CNA3 CVEs
Severity distribution among all CVEs352,231 CVEs
Medium
Attack Vector
Local2 (66.7%)
Network0 (0.0%)
Unknown0 (0.0%)
Physical1 (33.3%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (66.7%)
High1 (33.3%)
Unknown0 (0.0%)
User Interaction
None2 (66.7%)
Unknown0 (0.0%)
Required1 (33.3%)
Privileges Required
Low1 (33.3%)
High1 (33.3%)
None1 (33.3%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this cna scope (3 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID published by Wind River Systems Inc. as a CNA.

Media Mentions

Media articles that mention a CVE ID published by Wind River Systems Inc. as a CNA — matched by CVE ID, not by organization name.

Top CWEs