CVE Tools

Ceph

43 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Ceph, a product in the databases space. Use it to gauge the current risk picture and drill into individual advisories.

Ceph CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Ceph CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-061
2025-071
2025-080
2025-090
2025-100
2025-111
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-084
2026-090

Severity

How the 43 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical25%
  • High1842%
  • Medium2251%
  • Low12%

Latest CVEs

The 15 most recently published vulnerabilities affecting Ceph.

  1. CVE-2026-54330Ceph RGW SigV4 handler accepts unsigned x-amz-* headers on presigned requests, allowing privilege escalation8.1
  2. CVE-2026-50152Ceph Monitor subscription handler improperly authorizes config-key store reads, exposing cluster secrets to read-only users9.1
  3. CVE-2026-39944Ceph: CephX AES Authentication error8.8
  4. CVE-2025-30156Ceph: AES-CBC misuse in CephX and RADOSGW enables authentication bypass and credential forgery8.9
  5. CVE-2024-47866RGW DoS attack with empty HTTP header in S3 object copy7.5
  6. CVE-2024-48916Ceph is vulnerable to authentication bypass through RadosGW8.1
  7. CVE-2025-52555CephFS Permission Escalation Vulnerability in Ceph Fuse mounted FS6.5
  8. CVE-2023-43040IBM Spectrum Fusion HCI improper access control6.5
  9. CVE-2022-3854A flaw was found in Ceph, relating to the URL processing on RGW backends. An attacker can exploit the URL processing by providing a null URL to crash the RGW, causing a denial of service.6.5
  10. CVE-2022-3650A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump, and dump privileged information.7.8
  11. CVE-2021-3979A key length flaw was found in Red Hat Ceph Storage. An attacker can exploit the fact that the key length is incorrectly passed in an encryption algorithm to create a non random key, which is weake...6.5
  12. CVE-2022-0670A flaw was found in Openstack manilla owning a Ceph File system "share", which enables the owner to read/write any manilla share or entire file system. The vulnerability is due to a bug in the "vol...9.1
  13. CVE-2020-27839A flaw was found in ceph-dashboard. The JSON Web Token (JWT) used for user authentication is stored by the frontend application in the browser’s localStorage which is potentially vulnerable to at...5.4
  14. CVE-2021-3531A flaw was found in the Red Hat Ceph Storage RGW in versions before 14.2.21. When processing a GET Request for a swift URL that ends with two slashes it can cause the rgw to crash, resulting in a d...5.3
  15. CVE-2021-3524A flaw was found in the Red Hat Ceph Storage RadosGW (Ceph Object Gateway) in versions before 14.2.21. The vulnerability is related to the injection of HTTP headers via a CORS ExposeHeader tag. The...6.5

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store