Vendor

CrowdStrike vulnerabilities

6 advisories tracked, 0 exploited in the wild according to CISA, 2 published in 2026.

Data refreshed 10 Oct 2026

Patch now

Exploited in the last two years (CISA KEV), or a 10%+ chance of exploitation in the next 30 days (EPSS).

Nothing from CrowdStrike meets this bar right now: no CVE in CISA's exploited list, and none with a high exploitation score.

Products covered

Select a product to see only its advisories.

All tracked advisories

Newest first. Full analysis marks the CVEs we've written up in depth; the rest link to an automatic summary.

PublishedCVEProductIssueSeverityEPSSExploited
CVE-2026-40058Full analysisFalcon sensorVulnerability Affecting Office Macro Removal in CrowdStrike Falcon Sensor for WindowsHIGH 8.80.08%–
CVE-2026-40050Full analysisLogScaleCrowdStrike LogScale Unauthenticated Path TraversalCRITICAL 9.80.84%–
CVE-2025-42701Falcon sensorCrowdStrike Falcon Sensor for Windows Race ConditionMEDIUM 5.60.12%–
CVE-2025-42706Falcon sensorCrowdStrike Falcon Sensor for Windows Logic ErrorMEDIUM 6.50.17%–
CVE-2025-1146Falcon sensorCrowdStrike Falcon Sensor for Linux TLS IssueHIGH 8.10.26%–
CVE-2022-2841Falcon sensorCrowdStrike Falcon Uninstallation authorizationLOW 2.74.9%–

Sources: CrowdStrike security advisories, CISA KEV and FIRST EPSS. Severity is the vendor's own rating.

Get alerts

A notification when we publish a new analysis or a covered vendor gets a new actively exploited CVE. No account, no email.