sonos
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting sonos.
- CVE-2026-55093tract-nnef: integer overflow in NNEF `.dat` tensor parser yields an out-of-bounds read on model load6.1
- CVE-2026-55832Tract: Arbitrary file read via unsanitized ONNX external_data `location` (path traversal) on model load in tract-onnx6.1
- CVE-2026-75093sonos tract ONNX Initializer Loader tensor.rs from_raw_dt_align buffer size4.3
- CVE-2026-4149Sonos Era 300 SMB Response Out-Of-Bounds Access Remote Code Execution Vulnerability9.8
- CVE-2025-1051Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability8.8
- CVE-2025-1050Sonos Era 300 Out-of-Bounds Write Remote Code Execution Vulnerability8.8
- CVE-2025-1049Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability8.8
- CVE-2025-1048Sonos Era 300 Speaker libsmb2 Use-After-Free Remote Code Execution Vulnerability8.8
- CVE-2025-43916Sonos api.sonos.com through 2025-04-21, when the /login/v3/oauth endpoint is used, accepts a redirect_uri containing userinfo in the authority component, which is not consistent with RFC 6819 secti...3.4
- CVE-2024-5269Sonos Era 100 SMB2 Message Handling Use-After-Free Remote Code Execution Vulnerability8.8
- CVE-2024-5268Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Read Information Disclosure Vulnerability6.5
- CVE-2024-5267Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Write Remote Code Execution Vulnerability8.8
- CVE-2024-5256Sonos Era 100 SMB2 Message Handling Integer Underflow Information Disclosure Vulnerability4.3
- CVE-2023-27354This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-35220. Authentication is not required to exploit this vuln...6.5
- CVE-2023-27353This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-35220. Authentication is not required to exploit this vuln...6.5