← Back

Cloudflare

cloudflare

62 CVEs • 22 products

Products (22)

Click to collapse
Toggle
Warp
warp
Octorpki
octorpki
Quiche
quiche
Wrangler
wrangler
Pingora
pingora
Cloudflared
cloudflared
Circl
circl
Goflow
goflow
Golz4
golz4
Workerd
workerd
Cfnts
cfnts
Lua Resty Json
lua-resty-json
Odoh Rs
odoh-rs
Lol Html
lol-html
Boring
boring
Miniflare
miniflare
Zlib
zlib
Cloudflare
cloudflare
Gokey
gokey

CVEs (62)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cloudflare
1Warp
Jun 17, 2026
Feb 3, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Cloudflare WARP for Windows allows privilege escalation due to an unquoted service path. A malicious user or process running with non-administrative privileges can become an administrator by abusing the unquoted service...Show more
Cloudflare WARP for Windows allows privilege escalation due to an unquoted service path. A malicious user or process running with non-administrative privileges can become an administrator by abusing the unquoted service path issue. Since version 1.2.2695.1, the vulnerability was fixed by adding quotes around the service's binary path. This issue affects Cloudflare WARP for Windows, versions prior to 1.2.2695.1.Show less
1Cloudflare
1Cloudflared
Jun 17, 2026
Oct 2, 2020
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
`cloudflared` versions prior to 2020.8.1 contain a local privilege escalation vulnerability on Windows systems. When run on a Windows system, `cloudflared` searches for configuration files which could be abused by a mali...Show more
`cloudflared` versions prior to 2020.8.1 contain a local privilege escalation vulnerability on Windows systems. When run on a Windows system, `cloudflared` searches for configuration files which could be abused by a malicious entity to execute commands as a privileged user. Version 2020.8.1 fixes this issue.Show less