Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Real-Time Innovations, Inc.

First CVE: May 5, 2022Active for: 4 yearsTotal CVEs: 34
43.0
VTI Score
High

Real-Time Innovations, Inc. (RTI) maintains a specialized product line focused on data-distribution middleware and real-time communication frameworks, particularly the Connext DDS platform family, which addresses deterministic messaging and integration needs in embedded and aerospace-defense contexts. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and cluster persistently around memory-safety weakness classes, including classic buffer overflows, stack-based overflows, out-of-bounds reads and writes, and buffer over-reads that are characteristic of C/C++-based middleware operating in resource-constrained environments. The exposure spans multiple Connext product variants (Professional, Secure, and Micro editions), where the memory-handling patterns recur across versions and configurations. Defenders deploying RTI middleware in mission-critical or networked environments should prioritize patching and validate that embedded instances are kept current; current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
34
Total CVEs
More Total CVEs than 98% of tracked vendors
2.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 89% of tracked vendors
8.1
Avg CVSS Score
Higher Avg CVSS Score than 78% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Real-Time Innovations, Inc. over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 5, 2022
4 years ago
Most Recent CVE
Jun 17, 2026
37 days ago

Self-Reporting Analysis

Of all the CVEs published by Real-Time Innovations, Inc. as a CNA, 100.0% affect products that Real-Time Innovations, Inc. develops as a vendor.

100.0%
Self-reported: 30 (100.0%)
Third-party: 0 (0.0%)

Of all the CVEs published that affect products developed by Real-Time Innovations, Inc., 88.2% are self-published by Real-Time Innovations, Inc. as a CNA.

88.2%
11.8%
Self-published: 30 (88.2%)
Other CNAs: 4 (11.8%)

Products(4 total)

Top CVEs

Signals from CVEs in this vendor scope (34 CVEs).

34 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-3894CRITICAL
Out-of-bounds Read vulnerability in RTI Connext Professional (Core Libraries) allows Overread Buffers.This issue affects Connext Professional: from 7.4.0 before 7.7.0, from 7.0.0 b
Jun 17, 20269.136NONO
CVE-2026-30803CRITICAL
Integer Underflow (Wrap or Wraparound) vulnerability in RTI Connext Micro (Core Libraries) allows Overread Buffers.This issue affects Connext Micro: from 4.0.0 before 4.3.0.
Jun 17, 20269.135NONO
CVE-2026-2467HIGH
Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.This issue affects Connext Professional: from 7.4.0 before
Jun 17, 20268.135NONO
CVE-2026-30802HIGH
Out-of-bounds Read vulnerability in RTI Connext Micro (Core Libraries) allows Overread Buffers.This issue affects Connext Micro: from 4.0.0 before 4.3.0, from 2.4.5 before 2.4.*.
Jun 17, 20268.233NONO
CVE-2025-14543CRITICAL
Improper Restriction of XML External Entity Reference vulnerability in RTI Connext Professional (Core Libraries) allows Serialized Data External Linking.This issue affects Connext
Apr 30, 20269.132NONO
CVE-2025-1255CRITICAL
Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation.This issue affects Connext Professional: from 7.4.0 before 7.6.
Sep 23, 20259.132NONO
CVE-2026-2674HIGH
Out-of-bounds Write, Out-of-bounds Write, Out-of-bounds Write vulnerability in RTI Connext Professional (Queueing Service,Core Libraries,Persistence Service) allows Overflow Buffer
Jun 17, 20268.131NONO
CVE-2026-30799HIGH
Missing Authentication for Critical Function vulnerability in RTI Connext Professional (Security Plugins) allows Identity Spoofing.This issue affects Connext Professional: from 7.4
Jun 17, 20268.131NONO
CVE-2026-7300MEDIUM
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Web Integration Service) allows Filter Failure through Buffer Over
Jun 17, 20266.529NONO
CVE-2026-4374CRITICAL
Improper Restriction of XML External Entity Reference vulnerability in RTI Connext Professional (Cloud Discovery Service, Recording Service, Routing Service, Queueing Service, Obse
Apr 1, 20269.129NONO
View all 34 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products34 CVEs
9%
62%
29%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local13 (38.2%)
Network21 (61.8%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low32 (94.1%)
High2 (5.9%)
Unknown0 (0.0%)
User Interaction
None30 (88.2%)
Unknown0 (0.0%)
Required4 (11.8%)
Privileges Required
Low14 (41.2%)
High0 (0.0%)
None20 (58.8%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (34 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Real-Time Innovations, Inc..

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Real-Time Innovations, Inc. — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Real-Time Innovations, Inc.'s Products

View all 3 CNAs →

Top CWEs