37 exploited vulnerabilities in Systemd
- Vendors
- Alt Linux, Centos, Red Hat, Suse, Canonical, Systemd
- With known exploits
- 37
- Affected Canonical Ubuntu Linux versions
- = 16.04, 18.04, 18.10
- Affected Debian Debian Linux versions
- = 8.0, 10.0
- Affected Systemd Project Systemd versions
- < 244, 223, 242, 237, 228, 190, 259.3, 241, 257.13, 258.7, 259.5, 260, 245, 257.11, 258.5, 259.2, 251, 252, 250.2, 253, 246.15, 247.8, 248.5, 249.1, 239, 209, 213, 214, 229, 240, 252.37, 253.32, 254.25, 255.19, 256.14, 257.6, 259
- Affected Linux Linux Kernel versions
- < 5.4.300, 5.10.245, 5.15.194, 6.1.154, 6.6.108, 6.12.49, 6.16.9, 6.17
- Affected Linux Systemd versions
- = 43
Vulnerabilities with exploits
Highest CVSS first β 10 of these already have exploit code on Sploitus
CVE-2018-15686 4 exploits
CVE-2022-2526
CVE-2018-21029
CVE-2015-7510
CVE-2023-26604 3 exploits
CVE-2019-3843 1 exploit
CVE-2019-3844 3 exploits
systemd DynamicUser SetUID Binary Creation Exploitsystemd - DynamicUser can Create setuid Binaries when Assisted by Another Process
CVE-2018-15687 4 exploits
CVE-2017-18078 3 exploits
systemd (systemd-tmpfiles) < 236 - fs.protected_hardlinks=0 Local Privilege Escalation Vulnerabilsystemd Local Privilege Escalation
CVE-2018-6954
CVE-2016-10156 4 exploits
CVE-2026-32606
CVE-2013-4391
CVE-2026-40224
CVE-2025-2515
CVE-2019-3842 3 exploits
systemd - Lack of Seat Verification in PAM Module Permits Spoofing Active Session to polkitsystemd Seat Verification Active Session Spoofing
CVE-2026-40225
CVE-2026-40227
CVE-2020-13529 1 exploit
CVE-2026-40223
CVE-2026-29111
CVE-2025-39953
CVE-2022-45873
CVE-2022-3821
CVE-2021-3997
CVE-2022-4415
CVE-2021-33910 1 exploit
CVE-2019-6454
CVE-2016-7796
CVE-2016-7795
CVE-2023-31439
CVE-2023-31438
CVE-2023-31437
CVE-2019-15718
CVE-2025-4598
CVE-2026-40228
CVE-2012-1174