Vulnerabilities > Arduino

DATE CVE VULNERABILITY TITLE RISK
2023-12-13 CVE-2023-49296 Cross-site Scripting vulnerability in Arduino Create Agent
The Arduino Create Agent allows users to use the Arduino Create applications to upload code to any USB connected Arduino board directly from the browser.
network
low complexity
arduino CWE-79
6.1
2023-10-18 CVE-2023-43800 Insufficient Verification of Data Authenticity vulnerability in Arduino Create Agent
Arduino Create Agent is a package to help manage Arduino development.
local
low complexity
arduino CWE-345
7.8
2023-10-18 CVE-2023-43801 Path Traversal vulnerability in Arduino Create Agent
Arduino Create Agent is a package to help manage Arduino development.
local
low complexity
arduino CWE-22
7.1
2023-10-18 CVE-2023-43802 Path Traversal vulnerability in Arduino Create Agent
Arduino Create Agent is a package to help manage Arduino development.
local
low complexity
arduino CWE-22
7.8
2023-10-18 CVE-2023-43803 Path Traversal vulnerability in Arduino Create Agent
Arduino Create Agent is a package to help manage Arduino development.
local
low complexity
arduino CWE-22
7.1
2019-07-19 CVE-2019-13991 Unspecified vulnerability in Arduino Firmware
Embedded systems based on Arduino before Rev3 allow remote attackers to send data to LEDs (directly connected to GPIO pins) via a laser, because of LED photosensitivity.
low complexity
arduino
3.3