Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. Wazuh/
  3. Wazuh Oops! something went wrong

Wazuh Oops! something went wrong

AI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Secure coding rating: 0/100How this score is computedA product with no known CVEs starts at a neutral score and climbs the longer it goes without one; a product with known CVEs is penalized by severity instead. This one has 54 known CVEs (vendor-level match — see the CVE list below) and is tracked as ~39 days old in our catalog (a stand-in for real release date, which we don't track). The platform admin controls the formula's weights.

Open-source SIEM and XDR platform for threat detection and response

by Wazuh · wazuh.com · source ↗

Known CVEs (54)10 newAbout this listSourced from the public NVD database, matched by vendor name. Shown here at the vendor level — we don't track per-product/version data, so a listed CVE may affect a different product from this vendor, not necessarily this one. “New” means published within the last 30 days. “Actively exploited” means CISA's Known Exploited Vulnerabilities (KEV) catalog confirms real-world exploitation, not just a theoretical severity score.

RSS ⇢
  • CVE-2026-67308 ↗new2026

    Wazuh workflows before 44bf114 contain a shell injection vulnerability in GitHub Actions that allows attackers to execute arbitrary commands by submitting pull requests with crafted VERSION.json files…

  • CVE-2026-67307 ↗MEDIUM 6.3new2026

    Wazuh 5.0.0-beta1 (fixed in 5.0.0-beta3) does not validate or override the cluster_name and cluster_node fields in inventory-sync Start FlatBuffer messages, while validating only the agentid against t…

  • CVE-2026-28220 ↗HIGH 8.4new2026

    Wazuh is a free and open source platform used for threat prevention, detection, and response. Prior to version 4.14.5, issues in the Cluster Distributed API (DAPI) handling allow a cluster peer, or an…

  • CVE-2026-39359 ↗HIGH 7.5new2026

    Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 4.0.0 through 4.10.3 and 4.11.0 through 4.14.4, a logic flaw affects the Wazuh Manager's enrol…

  • CVE-2026-34150 ↗HIGH 7.5new2026

    Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 1.0.0 and above, prior to 4.14.5, a heap buffer overflow in wazuh-analysisd allows an unauthen…

  • CVE-2026-33754 ↗MEDIUM 6.5new2026

    Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 3.9.0 and above, prior to 4.14.5, a remote attacker can trigger memory exhaustion in the clust…

  • CVE-2026-33434 ↗MEDIUM 4.3new2026

    Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 4.6.0 and above, prior to 4.14.5, a logic error in CheckRateLimitsMiddleware.dispatch() causes…

  • CVE-2026-44251 ↗MEDIUM 6.5new2026

    Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 3.0.0 and above, prior to 4.14.5, a size_t integer underflow in os_crypto/shared/msgs.c:389 al…

  • CVE-2026-40106 ↗MEDIUM 4.7new2026

    Wazuh is a free and open source platform used for threat prevention, detection, and response. Versions 4.6.0 and above prior to 4.14.5 contain a heap-based buffer overflow vulnerability in the syschec…

  • CVE-2026-56699 ↗CRITICAL 10.0new2026

    Wazuh Manager before 5.0.0-beta3 fails to escape the DataValue.index field when constructing OpenSearch bulk requests, allowing enrolled agents to inject arbitrary NDJSON operations. Attackers can smu…

  • CVE-2026-41499 ↗MEDIUM 6.52026

    Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.0.0 to before version 4.14.4, multiple heap-based out-of-bounds WRITE vulnerabilities exist…

  • CVE-2026-30893 ↗CRITICAL 9.02026

    Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.4.0 to before version 4.14.4, a path traversal vulnerability in Wazuh's cluster synchroniza…

  • CVE-2026-28221 ↗MEDIUM 6.52026

    Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.8.0 to before version 4.14.4, a stack-based buffer overflow exists in print_hex_string() in…

  • CVE-2026-26206 ↗MEDIUM 6.52026

    Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.0.0 to before version 4.14.4, Wazuh's server API brute-force protection for POST /security/…

  • CVE-2026-26204 ↗MEDIUM 4.42026

    Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 1.0.0 to before version 4.14.4, a heap-based out-of-bounds WRITE occurs in GetAlertData, resu…

  • CVE-2025-15612 ↗MEDIUM 4.82026

    Wazuh provisioning scripts and Dockerfiles contain an insecure transport vulnerability where curl is invoked with the -k/--insecure flag, disabling SSL/TLS certificate validation. Attackers with netwo…

  • CVE-2025-15617 ↗MEDIUM 6.52026

    Wazuh version 4.12.0 contains an exposure vulnerability in GitHub Actions workflow artifacts that allows attackers to extract the GITHUB_TOKEN from uploaded artifacts. Attackers can use the exposed to…

  • CVE-2025-15616 ↗MEDIUM 6.72026

    Wazuh wazuh-agent and wazuh-manager versions 2.1.0 before 4.8.0 contain multiple shell injection and untrusted search path vulnerabilities that allow attackers to execute arbitrary commands through va…

  • CVE-2025-15615 ↗MEDIUM 5.82026

    Wazuh Manager authd service in wazuh-manager packages through version 4.7.3 contains an improper restriction of client-initiated SSL/TLS renegotiation vulnerability that allows remote attackers to cau…

  • CVE-2026-32984 ↗LOW 3.52026

    Wazuh authd contains a heap-buffer overflow vulnerability that allows attackers to cause memory corruption and malformed heap data by sending specially crafted input. Attackers can exploit this vulner…

  • …and 34 more

Materials

0

No datasheets, whitepapers, case studies, videos, or demos linked yet.

Other SIEM products

see all →
  • Abstract Security Platform · Abstract Security
  • AgileBlue Security Information and Event Management · AgileBlue
  • Anomali Unified Security Data Lake · Anomali
  • Anrita Cyber Defense · Zeronsec
  • Antiy Situational Awareness Platform · Antiy Labs
  • Auguria · Auguria
  • Autonomous Threat Sweeper · Securonix
  • Axoflow Platform · Axoflow