Known Vulnerabilities for Parallels by Parallels
Listed below are 4 of the newest known vulnerabilities associated with "Parallels" by "Parallels".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-90894 json | Parallels Desktop runs prl_disp_service as root. Local clients reach it on the world-writable socket /var/run/prl_disp_ser... | Not Provided | 2026-09-14 | 2026-09-14 |
| CVE-2026-68168 json | In the Linux kernel, the following vulnerability has been resolved: afs: Fix afs_edit_dir_remove() to get, not find, block 0... | Not Provided | 2026-08-10 | 2026-08-17 |
| CVE-2026-18263 json | Parallels RAS Client RDP Backend Service Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerabil... | Not Provided | 2026-08-20 | 2026-08-26 |
| CVE-2026-18262 json | Parallels RAS Client RDP Backend Service Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerabil... | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-13121 json | Parallels RAS Client RDP Backend Service Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerabil... | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2021-34869 json | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3-49160.... | 8.8 - HIGH | 2022-01-25 | 2022-02-01 |
| CVE-2021-34868 json | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3-49160.... | 8.8 - HIGH | 2022-01-25 | 2022-01-31 |
| CVE-2021-34867 json | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3-49160.... | 8.2 - HIGH | 2022-01-25 | 2022-01-31 |
| CVE-2020-7213 json | Parallels 13 uses cleartext HTTP as part of the update process, allowing man-in-the-middle attacks. Users of out-of-date vers... | 7.5 - HIGH | 2020-01-21 | 2020-01-29 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Parallels | Parallels | 13 |