Opendaylight Linux Foundation Opendaylight

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Linux Foundation Opendaylight.

By the Year

In 2026 there have been 0 vulnerabilities in Linux Foundation Opendaylight. Opendaylight did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 0 0.00
2024 0 0.00
2023 0 0.00
2022 3 7.50
2021 0 0.00
2020 0 0.00
2019 0 0.00
2018 1 0.00

It may take a day or so for new Opendaylight vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Linux Foundation Opendaylight Security Vulnerabilities

SQL Injection in OpenDaylight AAA before v0.16.5 via /auth/v1/roles API
CVE-2022-45932 7.5 - High - November 27, 2022

A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/opendaylight/aaa/datastore/h2/RoleStore.java deleteRole function is affected when the API interface /auth/v1/roles/ is used.

SQL Injection

OpenDaylight AAA <0.16.5: SQLi via deleteUser (UserStore)
CVE-2022-45931 7.5 - High - November 27, 2022

A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/opendaylight/aaa/datastore/h2/UserStore.java deleteUser function is affected when the API interface /auth/v1/users/ is used.

SQL Injection

OpenDaylight Controller 0.16.5: SQLi in AAA deleteDomain
CVE-2022-45930 7.5 - High - November 27, 2022

A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/opendaylight/aaa/datastore/h2/DomainStore.java deleteDomain function is affected for the /auth/v1/domains/ API interface.

SQL Injection

The odl-mdsal-apidocs feature in OpenDaylight Helium
CVE-2015-1857 - April 27, 2018

The odl-mdsal-apidocs feature in OpenDaylight Helium allow remote attackers to obtain sensitive information by leveraging missing AAA restrictions.

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Linux Foundation Opendaylight or by Linux Foundation? Click the Watch button to subscribe.

subscribe