Technology · Endian
Endian-Firewall-Community vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 32 vulnerabilities in Endian-Firewall-Community: 0 in the last 7 days and 0 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-34823, was published on 2 April 2026.
- Last 7 days
- 0
- Last 90 days
- 0
- Critical, all time
- 0
- Exploited in the wild
- 0
About Endian-Firewall-Community
A community-supported open source firewall and security gateway distribution.
Latest Endian-Firewall-Community vulnerabilities
- CVE-2026-34823: Endian Firewall stored XSS in remark parametermediumCVSS 6.4EPSS 0.1%
- CVE-2026-34822: Endian Firewall stored XSS in certificate management interfacemediumCVSS 6.4EPSS 0.1%
- CVE-2026-34821: Endian Firewall stored XSS in VPN user remark parametermediumCVSS 6.4EPSS 0.2%
- CVE-2026-34820: Endian Firewall stored XSS in IPsec remark parametermediumCVSS 6.4EPSS 0.1%
- CVE-2026-34819: Endian Firewall stored XSS in openvpnclient.cgimediumCVSS 6.4EPSS 0.2%
- CVE-2026-34818: Endian Firewall stored XSS in dnsmasq local domains remark parametermediumCVSS 6.4EPSS 0.1%
- CVE-2026-34817: Endian Firewall stored XSS in smtprouting.cgimediumCVSS 6.4EPSS 0.1%
- CVE-2026-34816: Endian Firewall stored XSS in SMTP scan domain routingmediumCVSS 6.4EPSS 0.1%
- CVE-2026-34815: Endian Firewall stored XSS in smtpdomains.cgimediumCVSS 6.4EPSS 0.1%
- CVE-2026-34814: Endian Firewall stored XSS in proxygroup.cgimediumCVSS 6.4EPSS 0.1%
- CVE-2026-34813: Endian Firewall stored XSS in proxyuser.cgimediumCVSS 6.4EPSS 0.2%
- CVE-2026-34812: Endian Firewall stored XSS in proxypolicy.cgi mimetypes parametermediumCVSS 6.4EPSS 0.1%
- CVE-2026-34811: Endian Firewall stored XSS in xtaccess.cgi remark parametermediumCVSS 6.4EPSS 0.1%
- CVE-2026-34810: Endian Firewall stored XSS in vpnfw.cgi remark parametermediumCVSS 6.4EPSS 0.1%
- CVE-2026-34809: Endian Firewall stored XSS in zonefw.cgi remark parametermediumCVSS 6.4EPSS 0.1%
- CVE-2026-34808: Endian Firewall stored XSS in outgoingfw.cgi remark parametermediumCVSS 6.4EPSS 0.1%
- CVE-2026-34807: Endian Firewall stored XSS in incoming.cgi remark parametermediumCVSS 6.4EPSS 0.2%
- CVE-2026-34806: Endian Firewall stored XSS in snat.cgi remark parametermediumCVSS 6.4EPSS 0.2%
- CVE-2026-34805: Endian Firewall stored XSS in dnat.cgi remark parametermediumCVSS 6.4EPSS 0.2%
- CVE-2026-34804: Endian Firewall stored XSS in QoS rules dscp parametermediumCVSS 6.4EPSS 0.2%
- CVE-2026-34803: Endian Firewall stored XSS in QoS classes management interfacemediumCVSS 6.4EPSS 0.2%
- CVE-2026-34802: Endian Firewall stored XSS in salearn.cgimediumCVSS 6.4EPSS 0.2%
- CVE-2026-34801: Endian Firewall stored XSS in DHCP fixed leases remark parametermediumCVSS 6.4EPSS 0.2%
- CVE-2026-34800: Endian Firewall stored XSS in uplinkeditor.cgimediumCVSS 6.4EPSS 0.2%
- CVE-2026-34799: Endian Firewall stored XSS in dnsmasq hosts remark parametermediumCVSS 6.4EPSS 0.2%
Most severe Endian-Firewall-Community vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-34796: Endian Firewall OS command injection in logs_openvpn.cgihighCVSS 8.8EPSS 1.5%
- CVE-2026-34795: Endian Firewall OS command injection in logs_log.cgihighCVSS 8.8EPSS 1.5%
- CVE-2026-34792: Endian Firewall OS command injection in logs_clamav.cgihighCVSS 8.8EPSS 1.3%
- CVE-2026-34797: Endian Firewall OS command injection in logs_smtp.cgihighCVSS 8.8EPSS 1.3%
- CVE-2026-34793: Endian Firewall OS command injection in logs_firewall.cgihighCVSS 8.8EPSS 1.3%
- CVE-2026-34794: Endian Firewall OS command injection in logs_ids.cgihighCVSS 8.8EPSS 1.2%
- CVE-2026-34807: Endian Firewall stored XSS in incoming.cgi remark parametermediumCVSS 6.4EPSS 0.2%
- CVE-2026-34801: Endian Firewall stored XSS in DHCP fixed leases remark parametermediumCVSS 6.4EPSS 0.2%
- CVE-2026-34819: Endian Firewall stored XSS in openvpnclient.cgimediumCVSS 6.4EPSS 0.2%
- CVE-2026-34813: Endian Firewall stored XSS in proxyuser.cgimediumCVSS 6.4EPSS 0.2%
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 0 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 0 | 0 | |
| 21 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/technologies/firewall-community.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Endian-Firewall-Community vulnerabilities", https://junglewise.ai/threats/technologies/firewall-community, 26 September 2026.