openrobotics records
33 published records for vendor openrobotics.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 8
- With a fix record
- 3%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-416 Use After Free8
- CWE-94 Improper Control of Generation of Code ('Code Injection')6
- CWE-281 Improper Preservation of Permissions6
- CWE-476 NULL Pointer Dereference5
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')2
- CWE-20 Improper Input Validation2
The weakness classes this vendor ships most often: where to look.
CWEAll records
33 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2022-48198No exploit | The ntpd_driver component before 1.3.0 and 2.x before 2.2.0 for Robot Operating System (ROS) allows attackers, who control the source code ontpd driver project · ntpd driver · CWE-668 | Critical9.8 | — | 1.1% | Jan 1, 2023 |
39Monitor | CVE-2024-41645No exploit | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitopenrobotics · robot operating system · CWE-281 | Critical9.8 | — | 0.7% | Dec 6, 2024 |
39Monitor | CVE-2024-41647No exploit | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitopenrobotics · robot operating system · CWE-732 | Critical9.8 | — | 0.7% | Dec 6, 2024 |
39Monitor | CVE-2024-41646No exploit | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitopenrobotics · robot operating system · CWE-281 | Critical9.8 | — | 0.7% | Dec 6, 2024 |
39Monitor | CVE-2024-41649No exploit | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitopenrobotics · robot operating system · CWE-281 | Critical9.8 | — | 0.7% | Dec 6, 2024 |
39Monitor | CVE-2024-41644No exploit | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitopenrobotics · robot operating system · CWE-281 | Critical9.8 | — | 0.7% | Dec 6, 2024 |
39Monitor | CVE-2024-44852No exploit | Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a segmentation violation via the component thetopenrobotics · robot operating system · CWE-763 | Critical9.8 | — | 0.6% | Dec 6, 2024 |
39Monitor | CVE-2024-38921No exploit | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proceopenrobotics · robot operating system · CWE-416 | Critical9.8 | — | 0.6% | Dec 6, 2024 |
39Monitor | CVE-2024-38922No exploit | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble version was discovered to contain a heap overflow in the nav2_amcl process.openrobotics · robot operating system · CWE-787 | Critical9.8 | — | 0.6% | Dec 6, 2024 |
39Monitor | CVE-2024-38927No exploit | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proceopenrobotics · robot operating system · CWE-416 | Critical9.8 | — | 0.6% | Dec 6, 2024 |
39Monitor | CVE-2024-38925No exploit | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proceopenrobotics · robot operating system · CWE-416 | Critical9.8 | — | 0.6% | Dec 6, 2024 |
39Monitor | CVE-2024-38926No exploit | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proceopenrobotics · robot operating system · CWE-416 | Critical9.8 | — | 0.6% | Dec 6, 2024 |
39Monitor | CVE-2024-38923No exploit | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proceopenrobotics · robot operating system · CWE-416 | Critical9.8 | — | 0.6% | Dec 6, 2024 |
39Monitor | CVE-2024-38924No exploit | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proceopenrobotics · robot operating system · CWE-416 | Critical9.8 | — | 0.6% | Dec 6, 2024 |
39Monitor | CVE-2024-41648No exploit | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitopenrobotics · robot operating system · CWE-281 | Critical9.8 | — | 0.5% | Dec 6, 2024 |
39Monitor | CVE-2024-41650No exploit | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitopenrobotics · robot operating system · CWE-281 | Critical9.8 | — | 0.5% | Dec 6, 2024 |
39Monitor | CVE-2024-39780No exploit | Use of unsafe yaml load in dynparamopenrobotics · robot operating system · CWE-20 | Critical9.8 | — | 0.4% | Apr 2, 2025 |
36Monitor | CVE-2020-10289No exploit | RVD#2401: Use of unsafe yaml load, ./src/actionlib/tools/library.py:132openrobotics · robot operating system · CWE-20 | High8.8 | — | 2.0% | Aug 20, 2020 |
36Monitor | CVE-2024-25198No exploit | Inappropriate pointer order of laser_scan_filter_.reset() and tf_listener_.reset() (amcl_node.cpp) in Open Robotics Robotic Operating Sytsteopennav · nav2 · CWE-416 | Critical9.1 | — | 0.7% | Feb 20, 2024 |
32Monitor | CVE-2024-25199No exploit | Inappropriate pointer order of map_sub_ and map_free(map_) (amcl_node.cpp) in Open Robotics Robotic Operating Sytstem 2 (ROS2) and Nav2 humbopennav · nav2 · CWE-416 | High8.1 | — | 0.6% | Feb 20, 2024 |
31Monitor | CVE-2024-30961No exploit | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allowopenrobotics · robot operating system · CWE-94 | High7.8 | — | 0.3% | Dec 5, 2024 |
31Monitor | CVE-2024-30962No exploit | Buffer Overflow vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a lopenrobotics · robot operating system · CWE-120 | High7.8 | — | 0.3% | Dec 5, 2024 |
31Monitor | CVE-2025-3753No exploit | Unsafe use of eval() method in rosbag toolopenrobotics · robot operating system · CWE-94 | High7.8 | — | 0.2% | Jul 17, 2025 |
31Monitor | CVE-2024-41148No exploit | Unsafe use of eval() method in rostopic hz toolopenrobotics · robot operating system · CWE-94 | High7.8 | — | 0.2% | Jul 17, 2025 |
31Monitor | CVE-2024-41921No exploit | Unsafe use of eval() method in rostopic echo toolopenrobotics · robot operating system · CWE-94 | High7.8 | — | 0.2% | Jul 17, 2025 |
- CVE-2022-4819839Monitor
The ntpd_driver component before 1.3.0 and 2.x before 2.2.0 for Robot Operating System (ROS) allows attackers, who control the source code o
CriticalCVSS 9.8No exploitEPSS 1%ntpd driver project · ntpd driverJan 1, 2023
- CVE-2024-4164539Monitor
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbit
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-4164739Monitor
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbit
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-4164639Monitor
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbit
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-4164939Monitor
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbit
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-4164439Monitor
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbit
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-4485239Monitor
Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a segmentation violation via the component thet
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-3892139Monitor
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proce
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-3892239Monitor
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble version was discovered to contain a heap overflow in the nav2_amcl process.
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-3892739Monitor
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proce
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-3892539Monitor
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proce
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-3892639Monitor
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proce
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-3892339Monitor
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proce
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-3892439Monitor
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proce
CriticalCVSS 9.8No exploitEPSS 1%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-4164839Monitor
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbit
CriticalCVSS 9.8No exploitEPSS 0%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-4165039Monitor
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbit
CriticalCVSS 9.8No exploitEPSS 0%openrobotics · robot operating systemDec 6, 2024
- CVE-2024-3978039Monitor
Use of unsafe yaml load in dynparam
CriticalCVSS 9.8No exploitEPSS 0%openrobotics · robot operating systemApr 2, 2025
- CVE-2020-1028936Monitor
RVD#2401: Use of unsafe yaml load, ./src/actionlib/tools/library.py:132
HighCVSS 8.8No exploitEPSS 2%openrobotics · robot operating systemAug 20, 2020
- CVE-2024-2519836Monitor
Inappropriate pointer order of laser_scan_filter_.reset() and tf_listener_.reset() (amcl_node.cpp) in Open Robotics Robotic Operating Sytste
CriticalCVSS 9.1No exploitEPSS 1%opennav · nav2Feb 20, 2024
- CVE-2024-2519932Monitor
Inappropriate pointer order of map_sub_ and map_free(map_) (amcl_node.cpp) in Open Robotics Robotic Operating Sytstem 2 (ROS2) and Nav2 humb
HighCVSS 8.1No exploitEPSS 1%opennav · nav2Feb 20, 2024
- CVE-2024-3096131Monitor
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allow
HighCVSS 7.8No exploitEPSS 0%openrobotics · robot operating systemDec 5, 2024
- CVE-2024-3096231Monitor
Buffer Overflow vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a l
HighCVSS 7.8No exploitEPSS 0%openrobotics · robot operating systemDec 5, 2024
- CVE-2025-375331Monitor
Unsafe use of eval() method in rosbag tool
HighCVSS 7.8No exploitEPSS 0%openrobotics · robot operating systemJul 17, 2025
- CVE-2024-4114831Monitor
Unsafe use of eval() method in rostopic hz tool
HighCVSS 7.8No exploitEPSS 0%openrobotics · robot operating systemJul 17, 2025
- CVE-2024-4192131Monitor
Unsafe use of eval() method in rostopic echo tool
HighCVSS 7.8No exploitEPSS 0%openrobotics · robot operating systemJul 17, 2025