The number and severity of CVEs published that impact products developed by Netmaker over time
Signals from CVEs in this vendor scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-38651HIGH Authentication Bypass vulnerability exists in Netmaker versions prior to 1.5.0. The VerifyHostToken function in logic/jwts.go fails to validate the JWT signature when verifying hos | Apr 28, 2026 | 8.2 | 31 | NO | NO |
CVE-2023-32077HIGH Netmaker makes networks with WireGuard. Prior to versions 0.17.1 and 0.18.6, hardcoded DNS key usage has been found in Netmaker allowing unauth users to interact with DNS API endpo | Aug 24, 2023 | 7.5 | 31 | NO | YES |
CVE-2022-0664CRITICAL Use of Hard-coded Cryptographic Key in Go github.com/gravitl/netmaker prior to 0.8.5,0.9.4,0.10.0,0.10.1. | Feb 18, 2022 | 9.8 | 31 | NO | NO |
CVE-2022-23650HIGH Netmaker is a platform for creating and managing virtual overlay networks using WireGuard. Prior to versions 0.8.5, 0.9.4, and 010.0, there is a hard-coded cryptographic key in the | Feb 18, 2022 | 8.8 | 28 | NO | NO |
CVE-2022-36110HIGH Netmaker makes networks with WireGuard. Prior to version 0.15.1, Improper Authorization functions lead to non-privileged users running privileged API calls. If someone adds users t | Sep 9, 2022 | 8.8 | 27 | NO | NO |
CVE-2026-29771MEDIUM Netmaker makes networks with WireGuard. Prior to version 1.2.0, the /api/server/shutdown endpoint allows termination of the Netmaker server process via syscall.SIGINT. This allows | Mar 7, 2026 | 6.5 | 23 | NO | NO |
CVE-2023-32079HIGH Netmaker makes networks with WireGuard. A Mass assignment vulnerability was found in versions prior to 0.17.1 and 0.18.6 that allows a non-admin user to escalate privileges to thos | Aug 24, 2023 | 8.8 | 22 | NO | NO |
CVE-2023-32078HIGH Netmaker makes networks with WireGuard. An Insecure Direct Object Reference (IDOR) vulnerability was found in versions prior to 0.17.1 and 0.18.6 in the user update function. By sp | Aug 24, 2023 | 7.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (8 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Netmaker.
Media articles that mention a CVE ID that affects a product developed by Netmaker — matched by CVE ID, not by vendor name.