Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Wazuh

First CVE: Nov 29, 2018Active for: 8 yearsTotal CVEs: 50
78.7
VTI Score
TOP TARGET

Wazuh maintains a security monitoring and threat-detection platform centered on a focused set of products including its core agent-manager system, dashboard, and Kibana integration components. Vulnerabilities affecting the vendor skew toward serious outcomes, with a meaningful share reaching critical severity, and cluster around memory-safety and input-handling weaknesses such as NULL-pointer dereferences, buffer overflows, path-traversal flaws, and unchecked return values that are characteristic of security-critical monitoring software. The exposure concentrates in the Wazuh platform and its dashboard interfaces, which sit in sensitive positions within infrastructure monitoring and log-aggregation architectures. Defenders should prioritize patching for this vendor given the elevated severity profile and the privileged access monitoring systems typically require; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
50
Total CVEs
More Total CVEs than 98% of tracked vendors
2.4
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 90% of tracked vendors
7.5
Avg CVSS Score
Higher Avg CVSS Score than 72% of tracked vendors
2.0%
In CISA KEV
Higher KEV Rate than 99% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Wazuh over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 29, 2018
7 years ago
Most Recent CVE
Jul 17, 2026
7 days ago

Products(3 total)

Top CVEs

Signals from CVEs in this vendor scope (50 CVEs).

50 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2025-24016CRITICAL
Wazuh is a free and open source platform used for threat prevention, detection, and response. Starting in version 4.4.0 and prior to version 4.9.1, an unsafe deserialization vulner
Feb 10, 20259.998YESYES
CVE-2023-50260HIGH
Wazuh is a free and open source platform used for threat prevention, detection, and response. A wrong validation in the `host_deny` script allows to write any string in the `hosts.
Apr 19, 20248.847NONO
CVE-2026-56699CRITICAL
Wazuh Manager before 5.0.0-beta3 fails to escape the DataValue.index field when constructing OpenSearch bulk requests, allowing enrolled agents to inject arbitrary NDJSON operation
Jul 15, 202610.041NONO
CVE-2026-30893CRITICAL
Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.4.0 to before version 4.14.4, a path traversal vulnerability in Wazuh's
Apr 29, 20269.940NONO
CVE-2026-25769CRITICAL
Wazuh is a free and open source platform used for threat prevention, detection, and response. Versions 4.0.0 through 4.14.2 have a Remote Code Execution (RCE) vulnerability due to
Mar 17, 20269.140NONO
CVE-2026-40106HIGH
Wazuh is a free and open source platform used for threat prevention, detection, and response. Versions 4.6.0 and above prior to 4.14.5 contain a heap-based buffer overflow vulnerab
Jul 17, 20267.833NONO
CVE-2026-39359HIGH
Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 4.0.0 through 4.10.3 and 4.11.0 through 4.14.4, a logic flaw affects the W
Jul 17, 20267.533NONO
CVE-2026-34150HIGH
Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 1.0.0 and above, prior to 4.14.5, a heap buffer overflow in wazuh-analysis
Jul 17, 20267.533NONO
CVE-2026-33434HIGH
Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 4.6.0 and above, prior to 4.14.5, a logic error in CheckRateLimitsMiddlewa
Jul 17, 20267.131NONO
CVE-2026-28221HIGH
Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.8.0 to before version 4.14.4, a stack-based buffer overflow exists in p
Apr 29, 20268.231NONO
View all 50 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products50 CVEs
22%
62%
14%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local6 (12.0%)
Network43 (86.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (2.0%)
Attack Complexity
Low47 (94.0%)
High3 (6.0%)
Unknown0 (0.0%)
User Interaction
None47 (94.0%)
Unknown0 (0.0%)
Required3 (6.0%)
Privileges Required
Low20 (40.0%)
High8 (16.0%)
None22 (44.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (50 CVEs).

CISA KEV
1 CVE
2.0% of CVEs· 99th percentile
Metasploit
1 CVE
2.0% of CVEs· 97th percentile
Nuclei
1 CVE
2.0% of CVEs· 95th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Wazuh.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Wazuh — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Wazuh's Products

View all 4 CNAs →

Top CWEs