riot-os
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 40 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 4, 2019 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →RIOT has an Out-of-Bounds Write in nanoCoAP Handler
RIOT Vulnerable to Multiple Out-of-Bounds Read When Processing Received 6LoWPAN SFR Fragments
RIOT OS <= 2026.01-devel-317 Stack-Based Buffer Overflow in ethos Serial Frame Parser
RIOT OS <= 2026.01-devel-317 Stack-Based Buffer Overflow in tapslip6 Utility
RIOT OS has buffer overflow in gnrc_ipv6_ext_frag_reass
RIOT-OS has NULL pointer dereference in gnrc_ipv6_ext_frag_reass
RIOT-OS has an ineffective size check that can lead to buffer overflow in link layer address filter /sys/net/link_layer/l2filter/l2filter.c
Spoofed length byte traps CC2538 in endless loop
RIOT-OS missing dhcpv6_opt_t minimum header length check
Ineffective size check due to assert() and buffer overflow in RIOT
Monitor riot-os in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.