Busybox Security Vulnerabilities (CVEs)

Track 9 security vulnerabilities affecting Busybox products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

2 Critical
6 High
1 Medium
🔔 Get Alerts for Busybox
CVE-2025-60876 6.5

BusyBox wget versions through 1.3.7 improperly accept raw CR/LF and C0 control characters in HTTP request targets, allowing attackers to split request...

Nov 10, 2025
CVE-2023-39810 7.8

A directory traversal vulnerability in BusyBox's cpio command allows attackers to write files outside the intended extraction directory. This affects ...

Aug 28, 2023
CVE-2022-48174 9.8

A stack overflow vulnerability in BusyBox's ash shell allows remote attackers to execute arbitrary code via crafted commands. This affects all systems...

Aug 22, 2023
CVE-2022-30065 7.8

CVE-2022-30065 is a use-after-free vulnerability in BusyBox's awk applet that can be triggered by processing a specially crafted awk pattern. This vul...

May 18, 2022
CVE-2021-42383 7.2

CVE-2021-42383 is a use-after-free vulnerability in BusyBox's awk applet that can be triggered by processing a specially crafted awk pattern. This vul...

Nov 15, 2021
CVE-2021-42385 7.2

CVE-2021-42385 is a use-after-free vulnerability in BusyBox's awk applet that can be triggered by processing a specially crafted awk pattern. This vul...

Nov 15, 2021
CVE-2021-42377 9.8

CVE-2021-42377 is a critical vulnerability in BusyBox's hush shell applet where an attacker-controlled pointer free leads to denial of service and pot...

Nov 15, 2021
CVE-2021-42379 7.2

CVE-2021-42379 is a use-after-free vulnerability in BusyBox's awk applet that can be triggered by processing a specially crafted awk pattern. This cou...

Nov 15, 2021
CVE-2021-42381 7.2

A use-after-free vulnerability in BusyBox's awk applet allows attackers to cause denial of service or potentially execute arbitrary code by providing ...

Nov 15, 2021

Why Monitor Busybox Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 9+ known vulnerabilities affecting Busybox products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Busybox packages in under 60 seconds. No agents required - completely agentless scanning that works across Busybox deployments.

Free vulnerability database: Access detailed information about every Busybox CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Busybox CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Busybox CVEs Free