Rapid7 Velociraptor
8 known vulnerabilities in Rapid7 Velociraptor, 2 critical, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-78413 CVSS 5.5 medium Velociraptor allows collection of VQL queries packaged into Artifacts from endpoints. These artifacts can be used to do anything and…
- CVE-2026-78411 CVSS 6.5 medium Velociraptor's SetClientMetadata used the wrong permission check to enforce setting metadata on the server. This allows a user with…
- CVE-2026-78412 CVSS 4.9 medium Velociraptor's WatchEvent gRPC API can specify the OrgId of the org from which events should be streamed. The server checks the API…
- CVE-2026-77798 CVSS 6.5 medium Velociraptor contains a deadlock condition that may be triggered by authenticated users. The issue stems from a lock management bug in the…
- CVE-2026-77797 CVSS 3.6 low Velociraptor's prefetch library contains an out of bound vulnerability which may cause a crash when parsing certain malformed prefetch…
- CVE-2026-19072 CVSS 9.9 critical Velociraptor stores the compiled VQL in the hunt object internally to avoid having to recompile the artifacts for each endpoint in the…
- CVE-2026-19584 CVSS 7.7 high Velociraptor allows for the creation of notebook backups in its default enabled daily backup feature. When Velociraptor restores the…
- CVE-2026-19583 CVSS 9.9 critical Velociraptor allows some sensitive artifacts to be gated by additional permissions. For example, the Linux.Sys.BashShell artifact allows…