VYPR
Vendor

ArduPilot

Products
3
CVEs
5
Across products
7
Status
Private

Products

3

Recent CVEs

5
  • CVE-2022-28711CriApr 14, 2022
    risk 0.64cvss 9.8epss 0.02

    A memory corruption vulnerability exists in the cgi.c unescape functionality of ArduPilot APWeb master branch 50b6b7ac - master branch 46177cb9. A specially-crafted HTTP request can lead to memory corruption. An attacker can send a network request to trigger this vulnerability.

  • CVE-2024-48519MedMay 13, 2026
    risk 0.40cvss 6.2epss 0.00

    Buffer Overflow vulnerability in Ardupilot rover commit v.c56439b045162058df0ff136afea3081fcd06d38 allows a local attacker to cause a denial of service via the AP_InertialSensor_ADIS1647x.cpp, ArduRover, ADIS1647x Sensor component.

  • CVE-2024-51395MedMay 13, 2026
    risk 0.33cvss 6.2epss 0.00

    Buffer Overflow vulnerability in Ardupiot Copter Latest commit 92693e023793133e49a035daf37c14433e484778 allows a local attacker to cause a denial of service via the AP_SmartAudio::loop, AP_SmartAudio, AP_SmartAudio.cpp components.

  • CVE-2024-51394MedMay 13, 2026
    risk 0.29cvss 5.5epss 0.00

    Buffer Overflow vulnerability in Ardupiot Copter Latest commit 92693e023793133e49a035daf37c14433e484778 allows a local attacker to cause a denial of service via the AP_MSP::loop, AP_MSP, AP_MSP.cpp components.

  • CVE-2026-38971CriJul 2, 2026
    risk 0.00cvss 9.1epss 0.01

    ardupilot through Plane-4.6.3 was found to contain an out-of-bounds read issue in libraries/GCS_MAVLink/GCS_serial_control.cpp in GCS_MAVLINK::handle_serial_control().