netfoundry has 2 CVEs on record. 2 were published in the last 90 days. The median CVSS is 8.3 (high), with 1 rated critical.
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 8.3
- Publish → KEV
- —
- Last 90 days
- 2 prev 0
Weakness classes
Products
- zrok 2
2
Total CVEs
1
Critical
0
CISA KEV
0
Exploited
netfoundry vulnerabilities
CVEs affecting netfoundry, newest first. Open any entry for full detail, references, and exploit status.
2 CVEsRSS
CVE-2026-45576High· 7.5zrok is software for sharing web services, files, and network resources
zrok is software for sharing web services, files, and network resources. From 0.4.23 until 2.0.3, `zrok2 copy` stores attacker-controlled WebDAV or zrok drive paths such as /../outside.txt in the source inventory and passes them to Files…
▾ Twilightnetfoundry · zrokEPSS 0.50%via NVD
CVE-2026-45568Critical· 9.1zrok is software for sharing web services, files, and network resources
zrok is software for sharing web services, files, and network resources. Prior to 2.0.3, zrok's Python SDK ProxyShare Flask proxy route accepts an absolute URL in the request path and passes it to urllib.parse.urljoin, allowing the reque…
▾ Midnightnetfoundry · zrokEPSS 0.54%via NVD