SecAlerts
rti logo

rti

Security Risk Profile

57
/100
medium

Security Risk Score

Comprehensive risk assessment based on 34 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from May 5, 2022 to present

34
Total CVEs
29
Critical+High
0
Exploited
24
Unpatched

Threat Assessment

Avg CVSS
8
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
24
Critical/High
Risk Level
57/100
medium

Severity Distribution

Critical
7
High
22
Medium
5
Low
0

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
1

Age Distribution

Common Weaknesses (CWE)

1
Buffer Overflow
16
2
XEE
2
3
Integer Underflow
1
4
Use After Free
1
5
Integer Overflow
1

Most Affected Products

1. RTI Connext Professional126
2. RTI Connext DDS Professional4
3. RTI Connext DDS Secure4
4. Eclipse, eProsima, GurumNetworks, Object Computing, Inc. (OCI), Real-Time Innovations (RTI), TwinOaks Computing Eclipse CycloneDDS4
5. Eclipse, eProsima, GurumNetworks, Object Computing, Inc. (OCI), Real-Time Innovations (RTI), TwinOaks Computing eProsima Fast DDS (#2269)4

Recent Vulnerabilities

See more →
CVE-2026-2674
CVSS 4.8medium

Out-of-bounds Write vulnerability in RTI Connext Professional (Queueing Service,Core Libraries,Persistence Service) allows Overflow Buffers.

6/17/2026🔧 No Patch
CVE-2026-30803
CVSS 8.8high

Integer Underflow (Wrap or Wraparound) vulnerability in RTI Connext Micro (Core Libraries) allows Overread Buffers.

6/17/2026🔧 No Patch
CVE-2026-30802
CVSS 8.8high

Out-of-bounds Read vulnerability in RTI Connext Micro (Core Libraries) allows Overread Buffers.

6/17/2026🔧 No Patch
CVE-2026-30799
CVSS 6.1medium

Missing Authentication for Critical Function vulnerability in RTI Connext Professional (Security Plugins) allows Identity Spoofing.

6/17/2026🔧 No Patch
CVE-2026-7300
CVSS 8.8high

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Web Integration Service) allows Filter Failure through Buffer Overflow.

6/17/2026🔧 No Patch
CVE-2026-3894
CVSS 9.2critical

Out-of-bounds Read vulnerability in RTI Connext Professional (Core Libraries) allows Overread Buffers.

6/17/2026🔧 No Patch
CVE-2026-2675
CVSS 6.0medium

Missing Authentication for Critical Function vulnerability in RTI Connext Professional (Security Plugins) allows Fake the Source of Data.

6/17/2026🔧 No Patch
CVE-2026-2467
CVSS 9.2critical

Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.

6/17/2026🔧 No Patch
CVE-2025-14543
CVSS 8.8high

Improper Restriction of XML External Entity Reference vulnerability in RTI Connext Professional (Core Libraries) allows Serialized Data External Linking.

4/30/2026🔧 No Patch
CVE-2026-4374
CVSS 8.8EPSS 0%high

Improper Restriction of XML External Entity Reference vulnerability in RTI Connext Professional (multiple infrastructure services) allows Serialized Data External Linking, Data Serialization External Entities Blowup.

4/1/2026🔧 No Patch

Monitor rti in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.