Skip to content

Products › Brands

Brand

Sudo: actively exploited vulnerabilities

2 vulnerabilities in Sudo products (Sudo) are in CISA’s catalog of exploited vulnerabilities. Last added: September 29, 2025.

By category

Add just one Sudo category to your radar, or open its page.

A high count also reflects how widely a product is deployed and how much attackers care about it: it is not a security rating.

Affected products

  • Sudo2 vulnerabilities, Operating systems

Name used by CISA: Sudo. Product families: indicative classification by this site.

Patch first

In the order of the main list (Patch first): recent additions first, then the most severe. The number is the rank within this Sudo list.

  1. Rank 1

    SudoCVE-2025-32463

    Sudo Inclusion of Functionality from Untrusted Control Sphere Vulnerability

    CVSS severity 7.8high

    Added Sep 29, 2025

  2. Rank 2

    SudoCVE-2021-3156

    Sudo Heap-Based Buffer Overflow Vulnerability

    CVSS severity 7.8high

    Added Apr 6, 2022

Follow and verify

Indicative classification, based on the vendor and product names given by CISA. How products are classified.