fleetdm records
28 published records for vendor fleetdm.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 89.3%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-290 Authentication Bypass by Spoofing4
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')3
- CWE-862 Missing Authorization3
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')3
- CWE-287 Improper Authentication2
- CWE-330 Use of Insufficiently Random Values1
The weakness classes this vendor ships most often: where to look.
CWEAll records
28 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2020-26276No exploit | SAML authentication vulnerability in Fleetfleetdm · fleet · CWE-290 | Critical9.8 | — | 2.2% | Dec 17, 2020 |
37Monitor | CVE-2026-23518No exploit | Fleet has a JWT signature bypass vulnerability in Azure AD MDM enrollmentfleetdm · fleet · CWE-347 | Critical9.3 | — | 0.3% | Jan 21, 2026 |
34Monitor | CVE-2026-26062No exploit | Fleet server may terminate unexpectedly when handling certain gRPC requestsfleetdm · fleet · CWE-20 | High8.7 | — | 0.5% | May 14, 2026 |
34Monitor | CVE-2026-26061No exploit | Fleet's unbounded request body read allows remote Denial of Servicefleetdm · fleet · CWE-770 | High8.7 | — | 0.5% | Mar 27, 2026 |
32Monitor | CVE-2022-24841No exploit | Improper Authorization in github.com/fleetdm/fleetfleetdm · fleet · CWE-284 | High8.1 | — | 0.8% | Apr 18, 2022 |
32Monitor | CVE-2026-24899No exploit | Fleet Windows MDM Azure AD JWT Authentication Bypassfleetdm · fleet · CWE-290 | High8.2 | — | 0.4% | May 14, 2026 |
32Monitor | CVE-2026-23998No exploit | Fleet has a Windows MDM management endpoint authentication bypassfleetdm · fleet · CWE-295 | High8.2 | — | 0.2% | May 14, 2026 |
31Monitor | CVE-2026-27806No exploit | Fleet Affected by Local Privilege Escalation via Tcl Command Injection in Orbitfleetdm · fleet · CWE-78 | High7.8 | — | 0.1% | Apr 8, 2026 |
27Monitor | CVE-2026-24000No exploit | Fleet has a rate limiting bypass via untrusted client IP headersfleetdm · fleet · CWE-290 | Medium6.9 | — | 0.4% | May 14, 2026 |
27Monitor | CVE-2026-46356No exploit | Fleet: IP spoofing allows bypassing API rate limitingfleetdm · fleet · CWE-290 | Medium6.9 | — | 0.4% | May 14, 2026 |
26Monitor | CVE-2022-23600No exploit | Limited ability to spoof SAML authentication with missing audience verificationfleetdm · fleet · CWE-287 | Medium6.5 | — | 0.9% | Feb 4, 2022 |
26Monitor | CVE-2026-34388No exploit | Fleet vulnerable to Denial of Service via unhandled gRPC log type in launcher endpointfleetdm · fleet · CWE-703 | Medium6.6 | — | 0.5% | Mar 27, 2026 |
26Monitor | CVE-2026-34391No exploit | Fleet Vulnerable to Windows MDM cross-device command disclosurefleetdm · fleet · CWE-488 | Medium6.6 | — | 0.3% | Mar 27, 2026 |
25Monitor | CVE-2026-34386No exploit | Fleet vulnerable to SQL injection in MDM bootstrap package by authenticated team or global adminfleetdm · fleet · CWE-89 | Medium6.3 | — | 0.4% | Mar 27, 2026 |
25Monitor | CVE-2026-23517No exploit | Fleet has an Access Control vulnerability in debug/pprof endpointsfleetdm · fleet · CWE-862 | Medium6.3 | — | 0.3% | Jan 21, 2026 |
24Monitor | CVE-2026-26191No exploit | Fleet vulnerable to OS command injection in software packagesfleetdm · fleet · CWE-78 | Medium6.0 | — | 0.9% | May 14, 2026 |
24Monitor | CVE-2026-26060No exploit | Fleet: Password reset tokens remain valid after password change for 24 hoursfleetdm · fleet · CWE-613 | Medium6.0 | — | 0.5% | Mar 27, 2026 |
24Monitor | CVE-2026-34385No exploit | Fleet's Apple MDM profile delivery has second-order SQL injection that can compromise the databasefleetdm · fleet · CWE-89 | Medium6.2 | — | 0.3% | Mar 27, 2026 |
23Monitor | CVE-2026-34387No exploit | Fleet vulnerable to OS command injection via crafted software package metadata in uninstall scriptsfleetdm · fleet · CWE-78 | Medium5.7 | — | 1.9% | Mar 27, 2026 |
22Monitor | CVE-2026-22808No exploit | Fleet Windows MDM endpoint has a Cross-site Scripting vulnerabilityfleetdm · fleet · CWE-79 | Medium5.5 | — | 0.3% | Jan 21, 2026 |
20Monitor | CVE-2026-26186No exploit | Fleet has a SQL injection via backtick escape in ORDER BY parameterfleetdm · fleet · CWE-89 | Medium5.1 | — | 0.6% | Feb 25, 2026 |
19Monitor | CVE-2026-29180No exploit | Fleet's team maintainer can transfer hosts from any team via missing source team authorizationfleetdm · fleet · CWE-862 | Medium4.9 | — | 0.4% | Mar 27, 2026 |
19Monitor | CVE-2026-34389No exploit | Fleet's user account creation via invite does not enforce invited email addressfleetdm · fleet · CWE-287 | Medium4.9 | — | 0.3% | Mar 27, 2026 |
11Monitor | CVE-2021-21296No exploit | Denial-of-service in Fleetfleetdm · fleet · CWE-400 | Low2.7 | — | 1.9% | Feb 10, 2021 |
6Monitor | CVE-2026-24004No exploit | Fleet: Unauthenticated Android device disenrollment vulnerability via Pub/Sub endpointfleetdm · fleet · CWE-862 | Low1.7 | — | 0.3% | Feb 25, 2026 |
- CVE-2020-2627640Plan
SAML authentication vulnerability in Fleet
CriticalCVSS 9.8No exploitEPSS 2%fleetdm · fleetDec 17, 2020
- CVE-2026-2351837Monitor
Fleet has a JWT signature bypass vulnerability in Azure AD MDM enrollment
CriticalCVSS 9.3No exploitEPSS 0%fleetdm · fleetJan 21, 2026
- CVE-2026-2606234Monitor
Fleet server may terminate unexpectedly when handling certain gRPC requests
HighCVSS 8.7No exploitEPSS 1%fleetdm · fleetMay 14, 2026
- CVE-2026-2606134Monitor
Fleet's unbounded request body read allows remote Denial of Service
HighCVSS 8.7No exploitEPSS 0%fleetdm · fleetMar 27, 2026
- CVE-2022-2484132Monitor
Improper Authorization in github.com/fleetdm/fleet
HighCVSS 8.1No exploitEPSS 1%fleetdm · fleetApr 18, 2022
- CVE-2026-2489932Monitor
Fleet Windows MDM Azure AD JWT Authentication Bypass
HighCVSS 8.2No exploitEPSS 0%fleetdm · fleetMay 14, 2026
- CVE-2026-2399832Monitor
Fleet has a Windows MDM management endpoint authentication bypass
HighCVSS 8.2No exploitEPSS 0%fleetdm · fleetMay 14, 2026
- CVE-2026-2780631Monitor
Fleet Affected by Local Privilege Escalation via Tcl Command Injection in Orbit
HighCVSS 7.8No exploitEPSS 0%fleetdm · fleetApr 8, 2026
- CVE-2026-2400027Monitor
Fleet has a rate limiting bypass via untrusted client IP headers
MediumCVSS 6.9No exploitEPSS 0%fleetdm · fleetMay 14, 2026
- CVE-2026-4635627Monitor
Fleet: IP spoofing allows bypassing API rate limiting
MediumCVSS 6.9No exploitEPSS 0%fleetdm · fleetMay 14, 2026
- CVE-2022-2360026Monitor
Limited ability to spoof SAML authentication with missing audience verification
MediumCVSS 6.5No exploitEPSS 1%fleetdm · fleetFeb 4, 2022
- CVE-2026-3438826Monitor
Fleet vulnerable to Denial of Service via unhandled gRPC log type in launcher endpoint
MediumCVSS 6.6No exploitEPSS 0%fleetdm · fleetMar 27, 2026
- CVE-2026-3439126Monitor
Fleet Vulnerable to Windows MDM cross-device command disclosure
MediumCVSS 6.6No exploitEPSS 0%fleetdm · fleetMar 27, 2026
- CVE-2026-3438625Monitor
Fleet vulnerable to SQL injection in MDM bootstrap package by authenticated team or global admin
MediumCVSS 6.3No exploitEPSS 0%fleetdm · fleetMar 27, 2026
- CVE-2026-2351725Monitor
Fleet has an Access Control vulnerability in debug/pprof endpoints
MediumCVSS 6.3No exploitEPSS 0%fleetdm · fleetJan 21, 2026
- CVE-2026-2619124Monitor
Fleet vulnerable to OS command injection in software packages
MediumCVSS 6.0No exploitEPSS 1%fleetdm · fleetMay 14, 2026
- CVE-2026-2606024Monitor
Fleet: Password reset tokens remain valid after password change for 24 hours
MediumCVSS 6.0No exploitEPSS 0%fleetdm · fleetMar 27, 2026
- CVE-2026-3438524Monitor
Fleet's Apple MDM profile delivery has second-order SQL injection that can compromise the database
MediumCVSS 6.2No exploitEPSS 0%fleetdm · fleetMar 27, 2026
- CVE-2026-3438723Monitor
Fleet vulnerable to OS command injection via crafted software package metadata in uninstall scripts
MediumCVSS 5.7No exploitEPSS 2%fleetdm · fleetMar 27, 2026
- CVE-2026-2280822Monitor
Fleet Windows MDM endpoint has a Cross-site Scripting vulnerability
MediumCVSS 5.5No exploitEPSS 0%fleetdm · fleetJan 21, 2026
- CVE-2026-2618620Monitor
Fleet has a SQL injection via backtick escape in ORDER BY parameter
MediumCVSS 5.1No exploitEPSS 1%fleetdm · fleetFeb 25, 2026
- CVE-2026-2918019Monitor
Fleet's team maintainer can transfer hosts from any team via missing source team authorization
MediumCVSS 4.9No exploitEPSS 0%fleetdm · fleetMar 27, 2026
- CVE-2026-3438919Monitor
Fleet's user account creation via invite does not enforce invited email address
MediumCVSS 4.9No exploitEPSS 0%fleetdm · fleetMar 27, 2026
- CVE-2021-2129611Monitor
Denial-of-service in Fleet
LowCVSS 2.7No exploitEPSS 2%fleetdm · fleetFeb 10, 2021
- CVE-2026-240046Monitor
Fleet: Unauthenticated Android device disenrollment vulnerability via Pub/Sub endpoint
LowCVSS 1.7No exploitEPSS 0%fleetdm · fleetFeb 25, 2026