Fast Dds
Vendor:
First CVE: May 5, 2022 · Active for 4 years
27
Total CVEs
More Total CVEs than 96% of tracked products
5.4
Avg CVEs / Year
Higher CVE frequency than 89% of tracked products
7.7
Avg CVSS
Higher Avg CVSS than 62% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Fast Dds over time
Volume of CVEsAvg CVSS Base Score
First CVE
May 5, 2022
4 years ago
Most Recent CVE
Feb 3, 2026
171 days ago
CVE Severity & Scoring
Fast Dds27 CVEs
78%
15%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local3 (11.1%)
Network23 (85.2%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (3.7%)
Attack Complexity
Low26 (96.3%)
High1 (3.7%)
Unknown0 (0.0%)
User Interaction
None27 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low3 (11.1%)
High0 (0.0%)
None24 (88.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (27 CVEs).
27 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-67108CRITICAL eProsima Fast-DDS v3.3 was discovered to contain improper validation for ticket revocation, resulting in insecure communications and connections. | Dec 23, 2025 | 10.0 | 38 | NO | NO |
CVE-2021-38425CRITICAL eProsima Fast DDS versions prior to 2.4.0 (#2269) are susceptible to exploitation when an attacker sends a specially crafted packet to flood a target device with unwanted traffic, | May 5, 2022 | 9.1 | 31 | NO | NO |
CVE-2025-62799CRITICAL Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group
). Prior to versions 3.4.1, 3.3.1, and 2.6.11, a heap buffer ov | Feb 3, 2026 | 9.8 | 30 | NO | NO |
CVE-2025-65865HIGH An integer overflow in eProsima Fast-DDS v3.3 allows attackers to cause a Denial of Service (DoS) via a crafted input. | Dec 23, 2025 | 7.5 | 28 | NO | NO |
CVE-2023-50716CRITICAL eProsima Fast DDS (formerly Fast RTPS) is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.13.0, 2.12.2, 2.11.3, 2 | Mar 6, 2024 | 9.8 | 25 | NO | NO |
CVE-2025-64438HIGH Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group
). Prior to versions 3.4.1, 3.3.1, and 2.6.11, a remotely trigg | Feb 3, 2026 | 7.5 | 24 | NO | NO |
CVE-2025-62603HIGH Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group
). ParticipantGenericMessage is the DDS Security control-messag | Feb 3, 2026 | 7.5 | 24 | NO | NO |
CVE-2025-62602HIGH Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group
). Prior to versions 3.4.1, 3.3.1, and 2.6.11, when the securit | Feb 3, 2026 | 7.5 | 24 | NO | NO |
CVE-2025-62601HIGH Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group
). Prior to versions 3.4.1, 3.3.1, and 2.6.11, when the securit | Feb 3, 2026 | 7.5 | 24 | NO | NO |
CVE-2025-62600HIGH eprosima Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). Prior to 2.6.11, 2.14.6, 3.2.4, 3.3.1, and 3.4.1, wh | Feb 3, 2026 | 7.5 | 24 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (27 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (27 CVEs).
Media Mentions
Signals from CVEs in this product scope (27 CVEs).
Top CNAs Publishing CVEs For Fast Dds
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 3.4.0 | 8 | 7.6 | 0.5% | 0 | 0 |
| 3.3.0 | 2 | 8.8 | 0.3% | 0 | 0 |
| 2.9.0 | 1 | 7.5 | 0.9% | 0 | 0 |
| 2.14.0 | 2 | 7.5 | 0.8% | 0 | 0 |
| 2.11.0 | 2 | 7.5 | 0.8% | 0 | 0 |
| 2.10.0 | 2 | 7.5 | 0.9% | 0 | 0 |