VendorsOpen Roboticsrobot_operating_systemall versions
Vulnerabilities

Open Robotics Robot Operating System (ROS)

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

33CVEs
CVE-2022-48198
The ntpd_driver component before 1.3.0 and 2.x before 2.2.0 for Robot Operating System (ROS) allows attackers, who control the source code of a different node in the same ROS application, to change a robot's behavior. This occurs because a topic name depends on the attacker-controlled time_ref_topic parameter.
Published 2023-01-01 · Modified
9.8EPSS 0.011
CVE-2024-41645
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2__amcl.
Published 2024-12-06 · Analyzed
9.8EPSS 0.007
CVE-2024-41649
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the executor_thread_.
Published 2024-12-06 · Analyzed
9.8EPSS 0.007
CVE-2024-41647
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2_mppi_controller.
Published 2024-12-06 · Analyzed
9.8EPSS 0.007
CVE-2024-41646
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2_dwb_controller.
Published 2024-12-06 · Analyzed
9.8EPSS 0.007
CVE-2024-41644
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via the dyn_param_handler_ component.
Published 2024-12-06 · Analyzed
9.8EPSS 0.007
CVE-2024-44852
Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a segmentation violation via the component theta_star::ThetaStar::isUnsafeToPlan().
Published 2024-12-06 · Analyzed
9.8EPSS 0.006
CVE-2024-38921
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request for change the value of dynamic-parameter`/amcl z_rand ` .
Published 2024-12-06 · Analyzed
9.8EPSS 0.006
CVE-2024-38922
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble version was discovered to contain a heap overflow in the nav2_amcl process. This vulnerability is triggered via sending a crafted message to the component /initialpose.
Published 2024-12-06 · Analyzed
9.8EPSS 0.006
CVE-2024-38925
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request for change the value of dynamic-parameter`/amcl z_max` .
Published 2024-12-06 · Analyzed
9.8EPSS 0.006
CVE-2024-38926
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request for change the value of dynamic-parameter `/amcl z_short`.
Published 2024-12-06 · Analyzed
9.8EPSS 0.006
CVE-2024-38927
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request to change the value of dynamic-parameter `/amcl do_beamskip`.
Published 2024-12-06 · Analyzed
9.8EPSS 0.006
CVE-2024-38923
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request to change the value of dynamic-parameter`/amcl odom_frame_id` .
Published 2024-12-06 · Analyzed
9.8EPSS 0.006
CVE-2024-38924
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggered via remotely sending a request to change the value of dynamic-parameter`/amcl laser_model_type` .
Published 2024-12-06 · Analyzed
9.8EPSS 0.006
CVE-2024-41648
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2_regulated_pure_pursuit_controller.
Published 2024-12-06 · Analyzed
9.8EPSS 0.005
CVE-2024-41650
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2_costmap_2d.
Published 2024-12-06 · Analyzed
9.8EPSS 0.005
CVE-2024-39780
Use of unsafe yaml load in dynparam
Published 2025-04-02 · Analyzed
9.8EPSS 0.004
CVE-2024-25198
Inappropriate pointer order of laser_scan_filter_.reset() and tf_listener_.reset() (amcl_node.cpp) in Open Robotics Robotic Operating Sytstem 2 (ROS2) and Nav2 humble versions leads to a use-after-free.
Published 2024-02-20 · Analyzed
9.1EPSS 0.007
CVE-2020-10289
RVD#2401: Use of unsafe yaml load, ./src/actionlib/tools/library.py:132
Published 2020-08-20 · Modified
8.8EPSS 0.020
CVE-2024-25199
Inappropriate pointer order of map_sub_ and map_free(map_) (amcl_node.cpp) in Open Robotics Robotic Operating Sytstem 2 (ROS2) and Nav2 humble versions leads to a use-after-free.
Published 2024-02-20 · Analyzed
8.1EPSS 0.006
CVE-2024-30961
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a local attacker to execute arbitrary code via the error-thrown mechanism in nav2_bt_navigator.
Published 2024-12-05 · Analyzed
7.8EPSS 0.003
CVE-2024-30962
Buffer Overflow vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a local attacker to execute arbitrary code via the nav2_amcl process
Published 2024-12-05 · Modified
7.8EPSS 0.003
CVE-2025-3753
Unsafe use of eval() method in rosbag tool
Published 2025-07-17 · Analyzed
7.8EPSS 0.002
CVE-2024-41148
Unsafe use of eval() method in rostopic hz tool
Published 2025-07-17 · Analyzed
7.8EPSS 0.002
CVE-2024-41921
Unsafe use of eval() method in rostopic echo tool
Published 2025-07-17 · Analyzed
7.8EPSS 0.002
CVE-2024-39289
Unsafe use of eval() method in rosparam tool
Published 2025-07-17 · Analyzed
7.8EPSS 0.002
CVE-2024-39835
Unsafe use of eval() method in roslaunch tool
Published 2025-07-17 · Analyzed
7.8EPSS 0.002
CVE-2024-44853
Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component computeControl().
Published 2024-12-06 · Analyzed
7.5EPSS 0.006
CVE-2024-44854
Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component smoothPlan().
Published 2024-12-06 · Analyzed
7.5EPSS 0.006
CVE-2024-44855
Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component nav2_navfn_planner().
Published 2024-12-06 · Analyzed
7.5EPSS 0.006
CVE-2024-44856
Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component nav2_smac_planner().
Published 2024-12-06 · Analyzed
7.5EPSS 0.006
CVE-2024-25197
Open Robotics Robotic Operating Sytstem 2 (ROS2) and Nav2 humble versions were discovered to contain a NULL pointer dereference via the isCurrent() function at /src/layered_costmap.cpp.
Published 2024-02-20 · Analyzed
6.5EPSS 0.007
CVE-2024-25196
Open Robotics Robotic Operating Sytstem 2 (ROS2) and Nav2 humble versions were discovered to contain a buffer overflow via the nav2_controller process. This vulnerability is triggerd via sending a crafted .yaml file.
Published 2024-02-20 · Analyzed
3.3EPSS 0.003