Rapid7

Velociraptor

20 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.15%
  • Veröffentlicht 09.06.2026 01:04:21
  • Zuletzt bearbeitet 09.06.2026 13:49:39

A YAML injection vulnerability exists in the Windows.Collectors.Remapping artifact of Rapid7 Velociraptor before version 0.76.6. The hostname field in client_info.json inside a collection ZIP is inserted into a YAML template via Go's text/template wi...

  • EPSS 0.24%
  • Veröffentlicht 06.05.2026 14:50:55
  • Zuletzt bearbeitet 07.05.2026 14:56:04

Velociraptor versions prior to 0.76.4 contain a cross organization authorization bypass in the HTTP API. A user with only the reader role in the root organization (the lowest authenticated role, holding only READ_RESULTS permission ) can issue a sing...

  • EPSS 0.26%
  • Veröffentlicht 06.05.2026 03:15:59
  • Zuletzt bearbeitet 01.06.2026 16:58:59

An authorization bypass (CWE-639) in the GetUserRoles gRPC API endpoint in Velocidex Velociraptor below version 0.76.5 allows any authenticated low-privilege user to retrieve the complete ACL policy (roles and permissions) for any user across all org...

  • EPSS 0.14%
  • Veröffentlicht 06.05.2026 03:15:58
  • Zuletzt bearbeitet 01.06.2026 16:59:31

An off-by-one error (CWE-193) in the ConsumeUnit16Array and ConsumeUnit64Array functions in Velocidex Velociraptor before version 0.76.5 on Windows and Linux allows a local attacker to cause a Denial of Service (DoS) via a process crash by providing ...

  • EPSS 0.34%
  • Veröffentlicht 04.05.2026 00:16:39
  • Zuletzt bearbeitet 04.05.2026 15:22:52

Velociraptor versions prior to 0.76.4 contain a resource exhaustion vulnerability in the server's agent control channel. This allows a compromised or rogue Velociraptor client to crash the server via out-of-memory (OOM) by sending crafted messages...

  • EPSS 0.22%
  • Veröffentlicht 15.04.2026 17:29:04
  • Zuletzt bearbeitet 23.04.2026 20:44:59

Velociraptor versions prior to 0.76.3 contain a vulnerability in the query() plugin which allows access to all orgs with the user's current ACL token. This allows an authenticated GUI user with access in one org, to use the query() plugin, in a noteb...

  • EPSS 0.43%
  • Veröffentlicht 09.04.2026 18:17:04
  • Zuletzt bearbeitet 28.04.2026 00:09:51

Rapid7 Velociraptor versions prior to 0.76.2 contain an improper input validation vulnerability in the client monitoring message handler on the Velociraptor server (primarily Linux) that allows an authenticated remote attacker to write to arbitrary ...

Exploit
  • EPSS 0.47%
  • Veröffentlicht 29.12.2025 19:15:55
  • Zuletzt bearbeitet 20.02.2026 19:37:59

Rapid7 Velociraptor versions before 0.75.6 contain a directory traversal issue on Linux servers that allows a rogue client to upload a file which is written outside the datastore directory. Velociraptor is normally only allowed to write in the datast...

Warnung Exploit
  • EPSS 0.96%
  • Veröffentlicht 20.06.2025 02:01:33
  • Zuletzt bearbeitet 23.10.2025 01:00:00

Velociraptor allows collection of VQL queries packaged into Artifacts from endpoints. These artifacts can be used to do anything and usually run with elevated permissions.  To limit access to some dangerous artifact, Velociraptor allows for those to ...

  • EPSS 0.22%
  • Veröffentlicht 27.02.2025 16:15:38
  • Zuletzt bearbeitet 15.04.2026 00:35:42

An improper access control issue in the VQL shell feature in Velociraptor Versions < 0.73.4 allowed authenticated users to execute the execve() plugin in deployments where this was explicitly forbidden by configuring the prevent_execve flag in the co...