VYPR

AdGuard

by AdGuard

CVEs (5)

  • CVE-2022-45770HigJan 26, 2023
    risk 0.51cvss 7.8epss 0.01

    Improper input validation in adgnetworkwfpdrv.sys in Adguard For Windows x86 through 7.11 allows local privilege escalation.

  • CVE-2023-41173HigAug 25, 2023
    risk 0.49cvss 7.5epss 0.01

    AdGuard DNS before 2.2 allows remote attackers to cause a denial of service via malformed UDP packets.

  • CVE-2021-27935HigMar 3, 2021
    risk 0.49cvss 7.5epss 0.04

    An issue was discovered in AdGuard before 0.105.2. An attacker able to get the user's cookie is able to bruteforce their password offline, because the hash of the password is stored in the cookie.

  • CVE-2024-48662MedJan 27, 2025
    risk 0.40cvss 6.1epss 0.00

    Cross Site Scripting vulnerability in AdGuard Application v.7.18.1 (4778) and before allows an attacker to execute arbitrary code via a crafted payload to the fontMatrix component.

  • CVE-2026-47703Jun 4, 2026
    risk 0.00cvss epss 0.00

    ## Summary This report covers the client-triggered DoQ forwarding path in: - `dnsproxy` `v0.81.2` (`adguard/dnsproxy:v0.81.2`) - `AdGuard Home` `v0.107.74` (`adguard/adguardhome:latest`, image version label `v0.107.74`) The issue was reproduced on `2026-04-25` with the…