Roo Code
Vendor:
First CVE: Jun 27, 2025 · Active for 1 year
11
Total CVEs
More Total CVEs than 89% of tracked products
5.5
Avg CVEs / Year
Higher CVE frequency than 89% of tracked products
8.3
Avg CVSS
Higher Avg CVSS than 73% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Roo Code over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 27, 2025
12 months ago
Most Recent CVE
Mar 30, 2026
116 days ago
CVE Severity & Scoring
Roo Code11 CVEs
9%
64%
27%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (18.2%)
Network9 (81.8%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (63.6%)
High4 (36.4%)
Unknown0 (0.0%)
User Interaction
None10 (90.9%)
Unknown0 (0.0%)
Required1 (9.1%)
Privileges Required
Low2 (18.2%)
High0 (0.0%)
None9 (81.8%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (11 CVEs).
11 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-58371CRITICAL Roo Code is an AI-powered autonomous coding agent that lives in users' editors. In versions 3.26.6 and below, a Github workflow used unsanitized pull request metadata in a privileg | Sep 5, 2025 | 9.8 | 35 | NO | NO |
CVE-2025-58372CRITICAL Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Versions 3.25.23 and below contain a vulnerability where certain VS Code workspace configuration fil | Sep 5, 2025 | 9.8 | 34 | NO | NO |
CVE-2026-30307CRITICAL Roo Code's command auto-approval module contains a critical OS command injection vulnerability that renders its whitelist security mechanism completely ineffective. The system reli | Mar 30, 2026 | 9.8 | 32 | NO | NO |
CVE-2025-65946HIGH Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Prior to version 3.26.7, Due to an error in validation it was possible for Roo to automatically exec | Nov 21, 2025 | 8.1 | 27 | NO | NO |
CVE-2025-58374HIGH Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Versions 3.25.23 and below contain a default list of allowed commands that do not need manual approv | Sep 6, 2025 | 7.8 | 27 | NO | NO |
CVE-2025-58370HIGH Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Versions below 3.26.0 contain a vulnerability in the command parsing logic where the Bash parameter | Sep 5, 2025 | 8.1 | 27 | NO | NO |
CVE-2025-54377HIGH Roo Code is an AI-powered autonomous coding agent that lives in users' editors. In versions 3.23.18 and below, RooCode does not validate line breaks (\n) in its command input, allo | Jul 23, 2025 | 7.8 | 26 | NO | NO |
CVE-2025-58373MEDIUM Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Versions 3.25.23 and below contain a vulnerability where .rooignore protections could be bypassed us | Sep 5, 2025 | 6.5 | 22 | NO | NO |
CVE-2025-53536HIGH Roo Code is an AI-powered autonomous coding agent. Prior to 3.22.6, if the victim had "Write" auto-approved, an attacker with the ability to submit prompts to the agent could write | Jul 7, 2025 | 8.1 | 22 | NO | NO |
CVE-2025-53098HIGH Roo Code is an AI-powered autonomous coding agent. The project-specific MCP configuration for the Roo Code agent is stored in the `.roo/mcp.json` file within the VS Code workspace. | Jun 27, 2025 | 8.1 | 22 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (11 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (11 CVEs).
Media Mentions
Signals from CVEs in this product scope (11 CVEs).
Top CNAs Publishing CVEs For Roo Code
Top CWEs
Versions
No cataloged versions.