Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Onosproject

15 known vulnerabilities

4
CRITICAL
7
HIGH
4
MEDIUM

Top Products

onos 13 traffic steering xapplication 2
15 CVEs
7.5
CVE-2024-34050

Open Networking Foundation SD-RAN Rimedo rimedo-ts 0.1.1 has a slice bounds out-of-range panic in "return uint64(b[2])<<

7.5
CVE-2024-34049

Open Networking Foundation SD-RAN Rimedo rimedo-ts 0.1.1 has a slice bounds out-of-range panic in "return plmnIdString[0

6.1
CVE-2023-30093

A cross-site scripting (XSS) vulnerability in Open Networking Foundation ONOS from version v1.9.0 to v2.7.0 allows attac

9.8
CVE-2019-13624

In ONOS 1.15.0, apps/yang/web/src/main/java/org/onosproject/yang/web/YangWebResource.java mishandles backquote character

9.8
CVE-2018-1000616

ONOS ONOS controller version 1.13.1 and earlier contains a XML External Entity (XXE) vulnerability in onos\drivers\utili

7.5
CVE-2018-1000615

ONOS ONOS Controller version 1.13.1 and earlier contains a Denial of Service (Service crash) vulnerability in OVSDB comp

9.8
CVE-2018-1000614

ONOS ONOS Controller version 1.13.1 and earlier contains a XML External Entity (XXE) vulnerability in providers/netconf/

6.8
CVE-2018-12691

Time-of-check to time-of-use (TOCTOU) race condition in org.onosproject.acl (aka the access control application) in ONOS

7.5
CVE-2017-13763

ONOS versions 1.8.0, 1.9.0, and 1.10.0 do not restrict the amount of memory allocated. The Netty payload size is not lim

6.1
CVE-2017-13762

ONOS versions 1.8.0, 1.9.0, and 1.10.0 are vulnerable to XSS.

7.5
CVE-2015-7516

ONOS before 1.5.0 when using the ifwd app allows remote attackers to cause a denial of service (NULL pointer dereference

9.8
CVE-2017-1000081

Linux foundation ONOS 1.9.0 is vulnerable to unauthenticated upload of applications (.oar) resulting in remote code exec

7.5
CVE-2017-1000080

Linux foundation ONOS 1.9.0 allows unauthenticated use of websockets.

7.5
CVE-2017-1000079

Linux foundation ONOS 1.9.0 is vulnerable to a DoS.

6.1
CVE-2017-1000078

Linux foundation ONOS 1.9 is vulnerable to XSS in the device. registration

Frequently Asked Questions

How many CVEs affect Onosproject?

Onosproject has 15 CVE records in our database, including 4 critical and 7 high severity vulnerabilities.

What are the most severe Onosproject vulnerabilities?

Onosproject has 4 critical severity (CVSS 9.0+) and 7 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.

How can I scan for Onosproject vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Onosproject products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Onosproject Vulnerabilities

CyberStrike scans your infrastructure for Onosproject vulnerabilities and provides real-time remediation guidance.

Get Started