RTI records
34 published records for vendor rti.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')11
- CWE-125 Out-of-bounds Read3
- CWE-121 Stack-based Buffer Overflow2
- CWE-611 Improper Restriction of XML External Entity Reference2
- CWE-122 Heap-based Buffer Overflow2
- CWE-306 Missing Authentication for Critical Function2
The weakness classes this vendor ships most often: where to look.
CWEAll records
34 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2021-38435No exploit | RTI Connext DDS Professional and Connext DDS Secure Incorrect Calculation of Buffer Sizerti · connext professional · CWE-131 | Critical9.8 | — | 1.4% | May 5, 2022 |
36Monitor | CVE-2021-38487No exploit | Potential Network Amplification and Information Exposure in RTI Connext Professional and Connext Microrti · connext dds micro · CWE-406 | High8.8 | — | 3.4% | May 5, 2022 |
36Monitor | CVE-2024-52057No exploit | Potential arbitrary SQL query execution in Queuing Service while parsing malicious remote commands or configuration filesrti · connext professional · CWE-89 | Critical9.1 | — | 0.4% | Dec 13, 2024 |
36Monitor | CVE-2026-3894No exploit | Out-of-bounds Read vulnerability in RTI Connext Professional (Core Libraries) allows Overread Buffers.rti · connext professional · CWE-125 | Critical9.2 | — | 0.3% | Jun 17, 2026 |
36Monitor | CVE-2026-2467No exploit | Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.rti · connext professional · CWE-122 | Critical9.2 | — | 0.2% | Jun 17, 2026 |
35Monitor | CVE-2026-30803No exploit | Integer Underflow (Wrap or Wraparound) vulnerability in RTI Connext Micro (Core Libraries) allows Overread Buffers.rti · connext micro · CWE-191 | High8.8 | — | 0.5% | Jun 17, 2026 |
35Monitor | CVE-2026-30802No exploit | Out-of-bounds Read vulnerability in RTI Connext Micro (Core Libraries) allows Overread Buffers.rti · connext micro · CWE-125 | High8.8 | — | 0.4% | Jun 17, 2026 |
35Monitor | CVE-2026-7300No exploit | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Web Integration Service) allows Filter Failurerti · connext professional · CWE-120 | High8.8 | — | 0.4% | Jun 17, 2026 |
35Monitor | CVE-2026-4374No exploit | Improper Restriction of XML External Entity Reference vulnerability in RTI Connext Professional (Recording Service,Routing Service,Queueing Service,Cloud Discovrti · connext professional · CWE-611 | High8.8 | — | 0.4% | Mar 31, 2026 |
35Monitor | CVE-2025-14543No exploit | Improper Restriction of XML External Entity Reference vulnerability in RTI Connext Professional (Core Libraries) allows Serialized Data External Linking.rti · connext professional · CWE-611 | High8.8 | — | 0.2% | Apr 30, 2026 |
34Monitor | CVE-2024-52058No exploit | Potential arbitrary command execution in System Designer while parsing malicious HTTP/REST requestsrti · connext professional · CWE-78 | High8.6 | — | 0.6% | Dec 13, 2024 |
33Monitor | CVE-2024-52061No exploit | Potential stack buffer overflow when parsing an XML typerti · connext professional · CWE-120 | High8.3 | — | 0.5% | Dec 13, 2024 |
33Monitor | CVE-2025-4993No exploit | Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation.rti · connext professional · CWE-822 | High8.3 | — | 0.4% | Sep 23, 2025 |
33Monitor | CVE-2025-1255No exploit | Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation.rti · connext professional · CWE-822 | High8.3 | — | 0.4% | Sep 23, 2025 |
33Monitor | CVE-2024-52063No exploit | Potential stack buffer write overflow in Connext applications while parsing malicious XML types documentrti · connext professional · CWE-120 | High8.3 | — | 0.3% | Dec 13, 2024 |
33Monitor | CVE-2024-52060No exploit | Potential stack overflow when using XML configuration file referencing environment variablesrti · connext professional · CWE-120 | High8.3 | — | 0.3% | Dec 13, 2024 |
33Monitor | CVE-2024-52066No exploit | Potential stack corruption in Routing Service when using a malicious XML configuration documentrti · connext professional · CWE-120 | High8.3 | — | 0.3% | Dec 13, 2024 |
33Monitor | CVE-2025-10450No exploit | Exposure of Private Personal Information to an Unauthorized Actor vulnerability in RTI Connext Professional (Core Libraries) allows Sniffing Network Traffic.rti · connext professional · CWE-359 | High8.3 | — | 0.2% | Dec 16, 2025 |
31Monitor | CVE-2021-38427No exploit | RTI Connext DDS Professional and Connext DDS Secure Stack-based Buffer Overflowrti · connext professional · CWE-121 | High7.8 | — | 0.6% | May 5, 2022 |
31Monitor | CVE-2021-38433No exploit | RTI Connext DDS Professional and Connext DDS Secure Stack-based Buffer Overflowrti · connext professional · CWE-121 | High7.8 | — | 0.6% | May 5, 2022 |
30Monitor | CVE-2025-1254No exploit | Out-of-bounds Read, Out-of-bounds Write vulnerability in RTI Connext Professional (Recording Service) allows Overflow Buffers, Overread Buffers.rti · connext professional · CWE-125 | High7.7 | — | 0.2% | May 8, 2025 |
29Monitor | CVE-2024-25724No exploit | In RTI Connext Professional 5.3.1 through 6.1.0 before 6.1.1, a buffer overflow in XML parsing from Routing Service, Recording Service, Queurti · connext professional · CWE-120 | High7.3 | — | 0.2% | May 21, 2024 |
27Monitor | CVE-2025-1253No exploit | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Stack-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) arti · connext professional · CWE-120 | Medium6.9 | — | 0.2% | May 8, 2025 |
27Monitor | CVE-2024-52059No exploit | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Heap-based Buffer Overflow, Integer Overflow or Wraparound vulnerability in RTI Connext rti · connext professional · CWE-120 | Medium6.9 | — | 0.2% | Dec 13, 2024 |
27Monitor | CVE-2024-52062No exploit | Potential stack buffer write overflow in Connext applications while parsing malicious XML types documentrti · connext professional · CWE-120 | Medium6.9 | — | 0.2% | Dec 13, 2024 |
- CVE-2021-3843539Monitor
RTI Connext DDS Professional and Connext DDS Secure Incorrect Calculation of Buffer Size
CriticalCVSS 9.8No exploitEPSS 1%rti · connext professionalMay 5, 2022
- CVE-2021-3848736Monitor
Potential Network Amplification and Information Exposure in RTI Connext Professional and Connext Micro
HighCVSS 8.8No exploitEPSS 3%rti · connext dds microMay 5, 2022
- CVE-2024-5205736Monitor
Potential arbitrary SQL query execution in Queuing Service while parsing malicious remote commands or configuration files
CriticalCVSS 9.1No exploitEPSS 0%rti · connext professionalDec 13, 2024
- CVE-2026-389436Monitor
Out-of-bounds Read vulnerability in RTI Connext Professional (Core Libraries) allows Overread Buffers.
CriticalCVSS 9.2No exploitEPSS 0%rti · connext professionalJun 17, 2026
- CVE-2026-246736Monitor
Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.
CriticalCVSS 9.2No exploitEPSS 0%rti · connext professionalJun 17, 2026
- CVE-2026-3080335Monitor
Integer Underflow (Wrap or Wraparound) vulnerability in RTI Connext Micro (Core Libraries) allows Overread Buffers.
HighCVSS 8.8No exploitEPSS 1%rti · connext microJun 17, 2026
- CVE-2026-3080235Monitor
Out-of-bounds Read vulnerability in RTI Connext Micro (Core Libraries) allows Overread Buffers.
HighCVSS 8.8No exploitEPSS 0%rti · connext microJun 17, 2026
- CVE-2026-730035Monitor
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Web Integration Service) allows Filter Failure
HighCVSS 8.8No exploitEPSS 0%rti · connext professionalJun 17, 2026
- CVE-2026-437435Monitor
Improper Restriction of XML External Entity Reference vulnerability in RTI Connext Professional (Recording Service,Routing Service,Queueing Service,Cloud Discov
HighCVSS 8.8No exploitEPSS 0%rti · connext professionalMar 31, 2026
- CVE-2025-1454335Monitor
Improper Restriction of XML External Entity Reference vulnerability in RTI Connext Professional (Core Libraries) allows Serialized Data External Linking.
HighCVSS 8.8No exploitEPSS 0%rti · connext professionalApr 30, 2026
- CVE-2024-5205834Monitor
Potential arbitrary command execution in System Designer while parsing malicious HTTP/REST requests
HighCVSS 8.6No exploitEPSS 1%rti · connext professionalDec 13, 2024
- CVE-2024-5206133Monitor
Potential stack buffer overflow when parsing an XML type
HighCVSS 8.3No exploitEPSS 0%rti · connext professionalDec 13, 2024
- CVE-2025-499333Monitor
Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation.
HighCVSS 8.3No exploitEPSS 0%rti · connext professionalSep 23, 2025
- CVE-2025-125533Monitor
Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation.
HighCVSS 8.3No exploitEPSS 0%rti · connext professionalSep 23, 2025
- CVE-2024-5206333Monitor
Potential stack buffer write overflow in Connext applications while parsing malicious XML types document
HighCVSS 8.3No exploitEPSS 0%rti · connext professionalDec 13, 2024
- CVE-2024-5206033Monitor
Potential stack overflow when using XML configuration file referencing environment variables
HighCVSS 8.3No exploitEPSS 0%rti · connext professionalDec 13, 2024
- CVE-2024-5206633Monitor
Potential stack corruption in Routing Service when using a malicious XML configuration document
HighCVSS 8.3No exploitEPSS 0%rti · connext professionalDec 13, 2024
- CVE-2025-1045033Monitor
Exposure of Private Personal Information to an Unauthorized Actor vulnerability in RTI Connext Professional (Core Libraries) allows Sniffing Network Traffic.
HighCVSS 8.3No exploitEPSS 0%rti · connext professionalDec 16, 2025
- CVE-2021-3842731Monitor
RTI Connext DDS Professional and Connext DDS Secure Stack-based Buffer Overflow
HighCVSS 7.8No exploitEPSS 1%rti · connext professionalMay 5, 2022
- CVE-2021-3843331Monitor
RTI Connext DDS Professional and Connext DDS Secure Stack-based Buffer Overflow
HighCVSS 7.8No exploitEPSS 1%rti · connext professionalMay 5, 2022
- CVE-2025-125430Monitor
Out-of-bounds Read, Out-of-bounds Write vulnerability in RTI Connext Professional (Recording Service) allows Overflow Buffers, Overread Buffers.
HighCVSS 7.7No exploitEPSS 0%rti · connext professionalMay 8, 2025
- CVE-2024-2572429Monitor
In RTI Connext Professional 5.3.1 through 6.1.0 before 6.1.1, a buffer overflow in XML parsing from Routing Service, Recording Service, Queu
HighCVSS 7.3No exploitEPSS 0%rti · connext professionalMay 21, 2024
- CVE-2025-125327Monitor
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Stack-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) a
MediumCVSS 6.9No exploitEPSS 0%rti · connext professionalMay 8, 2025
- CVE-2024-5205927Monitor
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Heap-based Buffer Overflow, Integer Overflow or Wraparound vulnerability in RTI Connext
MediumCVSS 6.9No exploitEPSS 0%rti · connext professionalDec 13, 2024
- CVE-2024-5206227Monitor
Potential stack buffer write overflow in Connext applications while parsing malicious XML types document
MediumCVSS 6.9No exploitEPSS 0%rti · connext professionalDec 13, 2024