Reyee OS
17 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Reyee OS, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
Reyee OS CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 10 |
| 2025-01 | 1 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 6 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 17 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical4
- High10
- Medium3
Latest CVEs
The 15 most recently published vulnerabilities affecting Reyee OS.
- CVE-2023-53881ReyeeOS 1.204.1614 Man-in-the-Middle Remote Code Execution via CWMP8.1
- CVE-2025-56083OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta...8.8
- CVE-2025-56084OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226_EW1800GX-PRO_10223117 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr...8.8
- CVE-2025-56099OS Command Injection vulnerability in Ruijie RG-YST AP_3.0(1)B11P280YST250F allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/mo...8.8
- CVE-2025-56113OS Command Injection vulnerability in Ruijie RG-YST EST, YSTAP_3.0(1)B11P280YST250F V1.xxV2.xx allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /...8.8
- CVE-2025-56077OS Command Injection vulnerability in Ruijie RG-RAP2200(E) 247 2200 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_...8.8
- CVE-2024-42936The mqlink.elf is service component in Ruijie RG-EW300N with firmware ReyeeOS 1.300.1422 is vulnerable to Remote Code Execution via a modified MQTT broker message.9.8
- CVE-2024-47146Ruijie Reyee OS Resource Leak6.5
- CVE-2024-52324Ruijie Reyee OS Use of Inherently Dangerous Function9.8
- CVE-2024-48874Ruijie Reyee OS Server-Side Request Forgery9.8
- CVE-2024-46874Ruijie Reyee OS Improper Handling of Insufficient Permissions or Privileges8.1
- CVE-2024-47791Ruijie Reyee OS Improper Neutralization of Wildcards or Matching Symbols7.5
- CVE-2024-45722Ruijie Reyee OS Use of Weak Credentials7.5
- CVE-2024-47043Ruijie Reyee OS Insecure Storage of Sensitive Information7.5
- CVE-2024-51727Ruijie Reyee OS Premature Release of Resource During Expected Lifetime6.5
Product grouping is registry-driven, with AI assist and human review. How it works