Security Advisory
Report Vulnerabilities
To report security issues affecting Cudy products, use this form.
Please note that submissions are monitored to identify potential product security issues. We will not reply to incoming messages unless further information is required.
Cudy Product Security Updates
To protect our users, Cudy does not publicly disclose security vulnerabilities until fixes are available. Detailed information about the vulnerabilities is also withheld until the corresponding security updates have been released. Once fixes are available, vulnerability information will be published on Cudy's official website.
| Advisory | Severity | Status | Last Updated |
|---|---|---|---|
| Cudy-SA-26-7-7KJW1B: Command Injection | Important | Resolved | 2026-07-29 14:00:00 UTC+8 |
| Cudy-SA-26-7-AIHGTK: Command Injection | Important | Resolved | 2026-07-29 14:00:00 UTC+8 |
| Cudy-SA-26-7-EHIXBE: Command Injection | Important | Resolved | 2026-07-29 14:00:00 UTC+8 |
| Cudy-SA-26-7-GNHH9V: Command Injection | Important | Resolved | 2026-07-24 14:46:00 UTC+8 |
| Cudy-SA-26-7-JEZZY4: Command Injection | Important | Resolved | 2026-07-29 14:00:00 UTC+8 |
| Cudy-SA-26-7-KMBRNC: Command Injection | Important | Resolved | 2026-07-29 14:00:00 UTC+8 |
| Cudy-SA-26-7-VUFM1E: Command Injection | Important | Resolved | 2026-07-29 14:00:00 UTC+8 |
| Cudy-SA-26-9-I1YYA5: Offline Password Guessing | Important | Resolved | 2026-09-01 09:30:00 UTC+8 |