Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Openwrt

First CVE: Jun 19, 2018Active for: 8 yearsTotal CVEs: 146
27.0
VTI Score
Low

OpenWrt is an embedded Linux distribution and customizable operating system for networking devices such as routers and wireless access points, deployed across a large installed base despite its narrow product scope. The vendor's vulnerability footprint clusters around its core router operating system and related components including the LuCI web interface, LEDE derivative, and the UCI configuration framework, reflecting the diversity of chipsets and embedded platforms that run the distribution. Vulnerabilities affecting OpenWrt skew toward serious outcomes, with a meaningful share reaching critical severity and recurring through memory-safety weakness classes including out-of-bounds reads and writes, buffer overflows, and web-interface input-validation flaws that are characteristic of C-based embedded firmware. The prominence of this vendor in the landscape stems from its presence in countless deployed devices that often operate without timely patching and remain internet-accessible, making OpenWrt disclosures relevant to a broad defensive footprint. Current severity and exploitation activity are shown alongside this summary.

FAUCET AI Generated
146
Total CVEs
More Total CVEs than 99% of tracked vendors
4.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 97% of tracked vendors
6.8
Avg CVSS Score
Higher Avg CVSS Score than 45% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Openwrt over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 19, 2018
8 years ago
Most Recent CVE
Jul 15, 2026
10 days ago

Products(4 total)

Top CVEs

Signals from CVEs in this vendor scope (146 CVEs).

146 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2024-20017CRITICAL
In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed.
Mar 4, 20249.859NONO
CVE-2026-62948CRITICAL
OpenWrt is a Linux operating system targeting embedded devices. Prior to 25.12.5, odhcpd writes a DHCPv6 client FQDN option 39 hostname into /tmp/odhcpd.leases through src/statefil
Jul 15, 20269.641NONO
CVE-2026-61876HIGH
LuCI versions fail to properly encode DHCPv6 lease hostnames before rendering in status tables, allowing adjacent network attackers to inject HTML markup. Attackers can send a DHCP
Jul 12, 20268.840NONO
CVE-2026-59260HIGH
OpenWrt luci-app-samba4 read ACL grants file.exec permission on /usr/sbin/smbd, allowing authenticated delegated users to execute the Samba daemon with caller-controlled command-li
Jul 12, 20268.840NONO
CVE-2026-61875HIGH
luci-app-upnp contains a stored cross-site scripting vulnerability that allows unauthenticated LAN clients to inject JavaScript via UPnP IGD AddPortMapping SOAP requests. Attackers
Jul 12, 20268.839NONO
CVE-2019-12272CRITICAL
In OpenWrt LuCI through 0.10, the endpoints admin/status/realtime/bandwidth_status and admin/status/realtime/wireless_status of the web application are affected by a command inject
May 23, 20199.833NONO
CVE-2026-30871CRITICAL
OpenWrt Project is a Linux operating system targeting embedded devices. In versions prior to 24.10.6 and 25.12.1, the mdns daemon has a Stack-based Buffer Overflow vulnerability in
Mar 19, 20269.832NONO
CVE-2026-30872CRITICAL
OpenWrt Project is a Linux operating system targeting embedded devices. In versions prior to 24.10.6 and 25.12.1, the mdns daemon has a Stack-based Buffer Overflow vulnerability in
Mar 19, 20269.831NONO
CVE-2020-28951CRITICAL
libuci in OpenWrt before 18.06.9 and 19.x before 19.07.5 may encounter a use after free when using malicious package names. This is related to uci_parse_package in file.c and uci_s
Nov 19, 20209.831NONO
CVE-2026-20430HIGH
In wlan AP FW, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional ex
Mar 2, 20268.830NONO
View all 146 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products146 CVEs
64%
27%
Severity distribution among all CVEs352,708 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local70 (47.9%)
Network43 (29.5%)
Unknown0 (0.0%)
Physical9 (6.2%)
Adjacent Network24 (16.4%)
Attack Complexity
Low139 (95.2%)
High7 (4.8%)
Unknown0 (0.0%)
User Interaction
None123 (84.2%)
Unknown0 (0.0%)
Required23 (15.8%)
Privileges Required
Low41 (28.1%)
High46 (31.5%)
None59 (40.4%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (146 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Openwrt.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Openwrt — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Openwrt's Products

View all 5 CNAs →

Top CWEs