Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Robocode

First CVE: Dec 15, 2007Active for: 19 yearsTotal CVEs: 6

Robocode is a programming game and robot-simulation framework with a narrowly focused product portfolio that carries disproportionate severity risk; vulnerabilities affecting the platform skew strongly toward critical-severity outcomes. The recurring exposure centers on its core simulation environment through weakness classes including path traversal, insecure temporary files, integer overflows, and missing authorization checks that reflect the challenges of safely sandboxing and executing untrusted user code. Current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
6
Total CVEs
More Total CVEs than 86% of tracked vendors
1.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 76% of tracked vendors
8.5
Avg CVSS Score
Higher Avg CVSS Score than 82% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Robocode over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 15, 2007
18 years ago
Most Recent CVE
Dec 9, 2025
227 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (6 CVEs).

6 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2025-14306CRITICAL
A directory traversal vulnerability exists in the CacheCleaner component of Robocode version 1.9.3.6. The recursivelyDelete method fails to properly sanitize file paths, allowing a
Dec 9, 20259.132NONO
CVE-2025-14308CRITICAL
An integer overflow vulnerability exists in the write method of the Buffer class in Robocode version 1.9.3.6. The method fails to properly validate the length of data being written
Dec 9, 20259.831NONO
CVE-2019-10648CRITICAL
Robocode through 1.9.3.5 allows remote attackers to cause external service interaction (DNS), as demonstrated by a query for a unique subdomain name within an attacker-controlled D
Mar 30, 20199.831NONO
CVE-2025-14307HIGH
An insecure temporary file creation vulnerability exists in the AutoExtract component of Robocode version 1.9.3.6. The createTempFile method fails to securely create temporary file
Dec 9, 20258.126NONO
CVE-2008-2078HIGH
Robocode before 1.6.0 allows user-assisted remote attackers to "access the internals of the Robocode game" via unspecified vectors related to the AWT Event Queue.
May 5, 20087.519NONO
CVE-2007-6382MEDIUM
The Event Dispatch Thread in Robocode before 1.5.1 allows remote attackers to execute arbitrary Java code by using a robot to invoke the SwingUtilities.invokeLater method.
Dec 15, 20076.818NONO
View all 6 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products6 CVEs
17%
33%
50%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network4 (66.7%)
Unknown2 (33.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low3 (50.0%)
High1 (16.7%)
Unknown2 (33.3%)
User Interaction
None4 (66.7%)
Unknown2 (33.3%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None4 (66.7%)
Unknown2 (33.3%)

Exploit Exposure

Signals from CVEs in this vendor scope (6 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Robocode.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Robocode — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Robocode's Products

View all 1 CNAs →

Top CWEs