VendorsCERNrucioall versions
Vulnerabilities

CERN Rucio

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2026-29080
Rucio SQL Injection in FilterEngine Oracle JSON Path via DID Search API
Published 2026-05-06 · Analyzed
9.4EPSS 0.005
CVE-2026-29090
Rucio SQL injection in postgres_meta DID search path compromises PostgreSQL metadata database
Published 2026-05-06 · Analyzed
9.0EPSS 0.005
CVE-2026-25136
Rucio WebUI has a Reflected Cross-site Scripting Vulnerability
Published 2026-02-25 · Analyzed
8.1EPSS 0.003
CVE-2026-25733
Rucio WebUI Vulnerable to Stored Cross-site Scripting (XSS) through Custom Rule Function
Published 2026-02-25 · Analyzed
7.3EPSS 0.004
CVE-2026-25734
Rucio WebUI has Stored Cross-site Scripting (XSS) in RSE Metadata
Published 2026-02-25 · Analyzed
6.1EPSS 0.005
CVE-2026-25735
Rucio WebUI has a Stored Cross-site Scripting (XSS) vulnerability its Identity Name
Published 2026-02-25 · Analyzed
6.1EPSS 0.005
CVE-2026-25736
Rucio WebUI has a Stored Cross-site Scripting (XSS) Vulnerability in its Custom RSE Attribute
Published 2026-02-25 · Analyzed
6.1EPSS 0.005
CVE-2026-25138
Rucio WebUI has Username Enumeration via Login Error Message
Published 2026-02-25 · Analyzed
5.3EPSS 0.003