Etcd
This hub aggregates every CVE we track for Etcd, a product in the databases space. Use it to gauge the current risk picture and drill into individual advisories.
14
CVEs tracked
1
Critical
5
High
0
In CISA KEV
Severity distribution
MEDIUM7HIGH5LOW1CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
0
0
1
2024-082026-07
Latest CVEs
The 14 most recently published vulnerabilities affecting Etcd.
- CVE-2026-59818etcd: gRPC client listener does not enforce `--client-crl-file` certificate revocation6.5
- CVE-2026-33413etcd: Authorization bypasses in multiple APIs8.8
- CVE-2022-34038Etcd v3.5.4 allows remote attackers to cause a denial of service via function PageWriter.write in pagewriter.go. NOTE: the vendor's position is that this is not a vulnerability.7.5
- CVE-2023-32082etcd key name can be accessed via LeaseTimeToLive API3.1
- CVE-2021-28235Authentication vulnerability found in Etcd-io v.3.4.10 allows remote attackers to escalate privileges via the debug function.9.8
- CVE-2020-15136Improper authentication in etcd6.5
- CVE-2020-15114Denial of Service in etcd7.7
- CVE-2020-15115No minimum password length in etcd5.8
- CVE-2020-15112Improper Input Validation in etcd6.5
- CVE-2020-15113Improper Preservation of Permissions in etcd5.7
- CVE-2020-15106Improper Input Validation in etcd6.5
- CVE-2018-16886etcd versions 3.2.x before 3.2.26 and 3.3.x before 3.3.11 are vulnerable to an improper authentication issue when role-based access control (RBAC) is used and client-cert-auth is enabled. If an etc...8.1
- CVE-2018-1098A cross-site request forgery flaw was found in etcd 3.3.1 and earlier. An attacker can set up a website that tries to send a POST request to the etcd server and modify a key. Adding a key is done w...8.8
- CVE-2018-1099DNS rebinding vulnerability found in etcd 3.3.1 and earlier. An attacker can control his DNS records to direct to localhost, and trick the browser into sending requests to localhost (or any other a...5.5
Product normalization is registry-driven with AI assist and human review. How it works