CVE Tools

Mavic 3 Classic

12 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Mavic 3 Classic, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.

Mavic 3 Classic CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Mavic 3 Classic CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-110
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-085
2026-090

Severity

How the 12 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Medium457%
  • Low343%

Latest CVEs

The 12 most recently published vulnerabilities affecting Mavic 3 Classic.

  1. CVE-2026-78321DJI Drone HTTP Media Server Denial of Service via Connection Pool Exhaustion—
  2. CVE-2026-78306DJI Drone Bluetooth Interface Unauthenticated DUML Command Execution—
  3. CVE-2026-78255DJI Drone HTTP Media Server Allows Unauthenticated Access to Stored Media—
  4. CVE-2026-78251DJI Drone FTP Service Allows Unrestricted Storage Consumption of the /blackbox Directory—
  5. CVE-2026-77812Cleartext Exposure of DJI Drone Wi-Fi Credentials via BLE—
  6. CVE-2023-51456A Improper Input Validation issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 could allow an attacker to trigger an out-of-bound read/write into the process...6.8
  7. CVE-2023-51455A Improper Validation of Array Index issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 could allow an attacker to corrupt a controlled memory location due t...6.8
  8. CVE-2023-51454A Out-of-bounds Write issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 could allow an attacker to overwrite a pointer in the process memory through a craft...6.8
  9. CVE-2023-51453A Improper Input Validation issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 could allow an attacker to cause a crash of the service through a crafted payl...3.0
  10. CVE-2023-51452A Improper Input Validation issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 could allow an attacker to cause a crash of the service through a crafted payl...3.0
  11. CVE-2023-6951A Use of Weak Credentials vulnerability affecting the Wi-Fi network generated by a set of DJI drones could allow a remote attacker to derive the WPA2 PSK key and authenticate without permission to ...6.6
  12. CVE-2023-6948A Buffer Copy without Checking Size of Input issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 could allow an attacker to cause a crash of the service throu...3.0

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store