Norton Norton

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in any Norton product.

RSS Feeds for Norton security vulnerabilities

Create a CVE RSS feed including security vulnerabilities found in Norton products with stack.watch. Just hit watch, then grab your custom RSS feed url.

Products by Norton Sorted by Most Security Vulnerabilities since 2018

Norton Password Manager4 vulnerabilities

Norton Power Eraser2 vulnerabilities

Install Norton Security1 vulnerability

By the Year

In 2026 there have been 0 vulnerabilities in Norton. Last year, in 2025 Norton had 1 security vulnerability published. Right now, Norton is on track to have less security vulnerabilities in 2026 than it did last year.




Year Vulnerabilities Average Score
2026 0 0.00
2025 1 7.80
2024 0 0.00
2023 1 7.80
2022 0 0.00
2021 0 0.00
2020 1 0.00
2019 5 0.00

It may take a day or so for new Norton vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Norton Security Vulnerabilities

CVE Date Vulnerability Products
CVE-2024-13944 May 09, 2025
Local PrivEsc via Symbolic Link in NUT Ult 24.2 (SYS Exec) Link Following Local Privilege Escalation Vulnerability in NortonUtilitiesSvc in Norton Utilities Ultimate Version 24.2.16862.6344 on Windows 10 Pro x64 allows local attackers to escalate privileges and execute arbitrary code in the context of SYSTEM via the creation of a symbolic link and leveraging a TOCTTOU (time-of-check to time-of-use) attack.
CVE-2022-4294 Jan 10, 2023
CVE-2022-4294: PrivEsc Vulnerability in Norton/Avira/Avast/AVG Antivirus Norton, Avira, Avast and AVG Antivirus for Windows may be susceptible to a Privilege Escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.
Power Eraser
CVE-2019-19548 Jan 14, 2020
Norton Power Eraser, prior to 5.3.0.67, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources Norton Power Eraser, prior to 5.3.0.67, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.
Power Eraser
CVE-2019-18381 Dec 05, 2019
Norton Password Manager, prior to 6.6.2.5, may be susceptible to a cross origin resource sharing (CORS) vulnerability, which is a type of issue Norton Password Manager, prior to 6.6.2.5, may be susceptible to a cross origin resource sharing (CORS) vulnerability, which is a type of issue that allows restricted resources on a web page to be requested from another domain outside the domain from which the first resource was served.
Password Manager
CVE-2019-19545 Dec 05, 2019
Norton Password Manager, prior to 6.6.2.5, may be susceptible to a cross origin resource sharing (CORS) vulnerability, which is a type of issue Norton Password Manager, prior to 6.6.2.5, may be susceptible to a cross origin resource sharing (CORS) vulnerability, which is a type of issue that allows restricted resources on a web page to be requested from another domain outside the domain from which the first resource was served.
Password Manager
CVE-2019-19546 Dec 05, 2019
Norton Password Manager, prior to 6.6.2.5, may be susceptible to an information disclosure issue, which is a type of vulnerability whereby there is an unintentional disclosure of information to an actor Norton Password Manager, prior to 6.6.2.5, may be susceptible to an information disclosure issue, which is a type of vulnerability whereby there is an unintentional disclosure of information to an actor that is not explicitly authorized to have access to that information.
Password Manager
CVE-2019-9700 Jul 16, 2019
Norton Password Manager, prior to 6.3.0.2082, may be susceptible to an address spoofing issue Norton Password Manager, prior to 6.3.0.2082, may be susceptible to an address spoofing issue. This type of issue may allow an attacker to disguise their origin IP address in order to obfuscate the source of network traffic.
Password Manager
CVE-2019-9695 Mar 29, 2019
Norton Core prior to v278 may be susceptible to an arbitrary code execution issue, which is a type of vulnerability Norton Core prior to v278 may be susceptible to an arbitrary code execution issue, which is a type of vulnerability that has the potential of allowing an individual to execute arbitrary commands or code on a target machine or in a target process. Note that this exploit is only possible with direct physical access to the device.
CVE-2017-15528 Nov 22, 2017
Prior to v 7.6, the Install Norton Security (INS) product can be susceptible to a certificate spoofing vulnerability Prior to v 7.6, the Install Norton Security (INS) product can be susceptible to a certificate spoofing vulnerability, which is a type of attack whereby a maliciously procured certificate binds the public key of an attacker to the domain name of the target.
Install Norton Security
Built by Foundeo Inc., with data from the National Vulnerability Database (NVD). Privacy Policy. Use of this site is governed by the Legal Terms
Disclaimer
CONTENT ON THIS WEBSITE IS PROVIDED ON AN "AS IS" BASIS AND DOES NOT IMPLY ANY KIND OF GUARANTEE OR WARRANTY, INCLUDING THE WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR USE. YOUR USE OF THE INFORMATION ON THE DOCUMENT OR MATERIALS LINKED FROM THE DOCUMENT IS AT YOUR OWN RISK. Always check with your vendor for the most up to date, and accurate information.