VulnSea

ipfire has 4 CVEs on record. The busiest recent month was October 2025 with 4. The median CVSS is 7.1 (high).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.1
Publish → KEV
—
Last 90 days
0 prev 0

Weakness classes

Products

  • ipfire 4
4
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

ipfire vulnerabilities

CVEs affecting ipfire, newest first. Open any entry for full detail, references, and exploit status.

4 CVEsRSS

CVE-2025-34316Medium· 5.4
11mo ago

IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenticated attacker to inject arbitrary JavaScript code through the txt_mailuser and txt_mailpass parameters when…

IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenticated attacker to inject arbitrary JavaScript code through the txt_mailuser and txt_mailpass parameters when…

▾ Sunlitipfire · ipfireEPSS 0.45%via NVD
CVE-2025-34315Medium· 5.4
11mo ago

IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenticated attacker to inject arbitrary JavaScript code through the REMOTELOG_ADDR parameter when updating the re…

IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS) vulnerability that allows an authenticated attacker to inject arbitrary JavaScript code through the REMOTELOG_ADDR parameter when updating the re…

▾ Sunlitipfire · ipfireEPSS 0.45%via NVD
CVE-2025-34312High· 8.8
11mo ago

IPFire versions prior to 2.29 (Core Update 198) contain a command injection vulnerability that allows an authenticated attacker to execute arbitrary commands as the 'nobody' user via the BE_NAME parameter when installing a blacklist

IPFire versions prior to 2.29 (Core Update 198) contain a command injection vulnerability that allows an authenticated attacker to execute arbitrary commands as the 'nobody' user via the BE_NAME parameter when installing a blacklist. Whe…

▾ Twilightipfire · ipfireEPSS 2.3%via NVD
CVE-2025-34311High· 8.8
11mo ago

IPFire versions prior to 2.29 (Core Update 198) contain a command injection vulnerability that allows an authenticated attacker to execute arbitrary commands as the user 'nobody' via multiple parameters when creating a Proxy report

IPFire versions prior to 2.29 (Core Update 198) contain a command injection vulnerability that allows an authenticated attacker to execute arbitrary commands as the user 'nobody' via multiple parameters when creating a Proxy report. When…

▾ Twilightipfire · ipfireEPSS 14%via NVD
ipfire vulnerabilities (CVEs) · VulnSea