bosch
CVE Numbering Authority
Latest CVE published
Overview
bosch is a CVE Numbering Authority that has published 121 CVE records since 2019. It is currently classified as active, with 22 CVEs published in the last two years. Its CVE data quality is graded A (95.3% overall completeness).
Among the 370 CNAs tracked here, bosch ranks #114 by CVE volume and reports more complete records than 43% of all CNAs.
Data quality report card
How complete and consistent bosch's CVE records are, scored across vendor, product, CVSS, and CWE coverage.
A CVE record only requires a description to be published. “Completeness” measures how often bosch also fills in the optional — but extremely useful — fields that make a vulnerability actually actionable: the affected vendor and product, a CVSS severity score, and a CWE weakness type. A higher score means more of this CNA’s CVEs include those details, so defenders spend less time enriching records by hand.
Report card grade
95.3%
Overall score
What these scores mean
- Vendor completeness
- The share of this CNA's CVEs that name an affected vendor.
- Product completeness
- The share that name a specific affected product.
- CVSS completeness
- The share that include a CVSS severity score.
- CWE completeness
- The share mapped to a CWE weakness type.
- Update rate
- How often this CNA revises CVE records after first publishing them.
- Vendor diversity
- How many distinct vendors this CNA publishes CVEs for.
Severity and exploitation
How the CVSS severity of bosch's published CVEs breaks down, and how many are known to be exploited in the wild.
In CISA’s Known Exploited Vulnerabilities catalog
0
None of bosch's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
Common weakness types
The CWE weakness categories bosch most often assigns to its CVEs. Follow any weakness to its full explanation.
- CWE-79Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')11 CVEs
- CWE-284Improper Access Control9 CVEs
- CWE-427Uncontrolled Search Path Element7 CVEs
- CWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')6 CVEs
- CWE-121Stack-based Buffer Overflow6 CVEs
- CWE-798Use of Hard-coded Credentials6 CVEs
- CWE-306Missing Authentication for Critical Function5 CVEs
- CWE-200Exposure of Sensitive Information to an Unauthorized Actor4 CVEs
Publishing activity by year
How many CVEs bosch has published each year.
Top vendors
The vendors bosch publishes the most CVEs for.
- Bosch100 CVEs
- Rexroth35 CVEs
- Bosch Rexroth AG32 CVEs
- RTS2 CVEs
- boschrexrothag2 CVEs
- ProSyst1 CVEs
- Telex1 CVEs
Top products
The products bosch publishes the most CVEs for.
- Nexo cordless nutrunner NXA050S-36V (0608842003)25 CVEs
- Nexo cordless nutrunner NXA030S-36V-B (0608842007)25 CVEs
- Nexo cordless nutrunner NXA015S-36V (0608842001)25 CVEs
- Nexo cordless nutrunner NXA011S-36V-B (0608842012)25 CVEs
- Nexo cordless nutrunner NXA015S-36V-B (0608842006)25 CVEs
- Nexo cordless nutrunner NXA030S-36V (0608842002)25 CVEs
- Nexo cordless nutrunner NXA011S-36V (0608842011)25 CVEs
- Nexo cordless nutrunner NXA050S-36V-B (0608842008)25 CVEs
Latest CVEs
The most recent CVEs assigned by bosch.
- CVE-2026-56428High · CVSS 8.1EPSS 0.3%2026-07-30
- CVE-2024-58330High · CVSS 7.5EPSS 0.5%2026-07-23
- CVE-2024-58023High · CVSS 8.4EPSS 0.1%2026-07-23
- CVE-2024-33618High · CVSS 7.5EPSS 0.5%2026-04-15
- CVE-2025-60038High · CVSS 8.8EPSS 0.3%2026-02-18
- CVE-2025-60037High · CVSS 8.8EPSS 0.3%2026-02-18
- CVE-2025-60036High · CVSS 8.8EPSS 0.4%2026-02-18
- CVE-2025-60035High · CVSS 8.8EPSS 0.4%2026-02-18
- CVE-2025-48862High · CVSS 7.1EPSS 0.1%2025-08-14
- CVE-2025-48861Medium · CVSS 5.3EPSS 0.3%2025-08-14
- CVE-2025-48860High · CVSS 8.0EPSS 0.3%2025-08-14
- CVE-2025-29902Critical · CVSS 10.0EPSS 1.0%2025-06-13
Track new bosch CVEs as they are published and get AI-written analysis and remediation guidance.
Monitor bosch CVEsOther CNAs
Compare data quality across other CVE Numbering Authorities.
Frequently asked questions
Common questions about the bosch CNA.
- What is the bosch CNA?
- bosch is a CVE Numbering Authority (CNA) — an organization authorized to assign CVE IDs to vulnerabilities in its scope. It has published 121 CVE records since 2019.
- How many CVEs has bosch published?
- bosch has published 121 CVE records, including 22 in the last two years.
- What is bosch's CVE data quality grade?
- RadicalNotion.AI grades bosch's CVE data quality as A, with an overall completeness score of 95.3%. This reflects how consistently its CVE records include vendor (99.2%), product (99.2%), CVSS (100%), and CWE (82.6%) information.
- What products does bosch publish CVEs for?
- bosch most frequently publishes CVEs for Nexo cordless nutrunner NXA050S-36V (0608842003), Nexo cordless nutrunner NXA030S-36V-B (0608842007), Nexo cordless nutrunner NXA015S-36V (0608842001), Nexo cordless nutrunner NXA011S-36V-B (0608842012), Nexo cordless nutrunner NXA015S-36V-B (0608842006).
- Which vendors does bosch cover?
- bosch publishes CVEs across 6 distinct vendors, most often Bosch, Rexroth, Bosch Rexroth AG, RTS, boschrexrothag.
- Is bosch actively publishing CVEs?
- bosch is currently active, based on 22 CVEs in the last two years.
- What is the average severity of bosch's CVEs?
- The average CVSS base score across bosch's scored CVEs is 7.3.
- How many critical CVEs has bosch published?
- bosch has published 22 critical-severity CVEs and 72 high-severity CVEs.
- Are any of bosch's CVEs in CISA's Known Exploited Vulnerabilities catalog?
- No. None of bosch's CVEs are currently listed in CISA's Known Exploited Vulnerabilities (KEV) catalog.
- What are the most common weakness types in bosch's CVEs?
- bosch's CVEs most often map to these CWE weakness types: CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-284 (Improper Access Control), CWE-427 (Uncontrolled Search Path Element), CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')).
- How does bosch rank among CNAs?
- By total CVE volume, bosch ranks #114 of 370 CNAs, and it reports more complete CVE records than 43% of all CNAs.
References
- Official CVE.org list of CNA partners (opens in a new tab)
- Learn: What is a CNA?
- CWE directory: the weakness types this CNA maps its CVEs to
CNA report-card grades are computed by RadicalNotion.AI from published CVE records. CVE data is sourced from the CVE Program.
Track bosch CVEs
Monitor new vulnerabilities as this CNA publishes them, with AI-written analysis and remediation guidance.