Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-76923 |
|
Out-of-Bounds Read in dos (CVE-2026-76923)
vulnerability in dos (CVE-2026-76923). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76924 |
|
Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76926 |
|
BUSMASTER file parser abnormal exit in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
BUSMASTER file parser abnormal exit in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76927 |
|
H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76928 |
|
X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76929 |
|
Pcapng file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Pcapng file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76890 |
|
Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76891 |
|
Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76917 |
|
Vulnerability in dos (CVE-2026-76917)
vulnerability in dos (CVE-2026-76917). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76918 |
|
SSH protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
SSH protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76919 |
|
ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76920 |
|
3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76921 |
|
CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76922 |
|
Vulnerability in dos (CVE-2026-76922)
vulnerability in dos (CVE-2026-76922). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76882 |
|
Out-of-Bounds Read in dos (CVE-2026-76882)
vulnerability in dos (CVE-2026-76882). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76883 |
|
Catapult DCT2000 file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Catapult DCT2000 file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76884 |
|
ERF file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
ERF file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76885 |
|
Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76886 |
|
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76887 |
|
Vulnerability in dos (CVE-2026-76887)
vulnerability in dos (CVE-2026-76887). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76888 |
|
RDP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
RDP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76889 |
|
UMTS FP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
UMTS FP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76879 |
|
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76880 |
|
RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76881 |
|
CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76850 |
|
Unsafe Deserialization in deserialization (CVE-2026-76850)
vulnerability in deserialization (CVE-2026-76850). Successful exploitation can lead to full system takeover. Exploitable via `POST /distserve/p2p_initialize`.
|
| CVE-2026-76832 |
|
Path Traversal in path-traversal (CVE-2026-76832)
path traversal in path-traversal (CVE-2026-76832). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76395 |
|
Unsafe Deserialization in deserialization (CVE-2026-76395)
vulnerability in deserialization (CVE-2026-76395). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76367 |
|
Cross-Site Scripting (XSS) in splunk (CVE-2026-76367)
cross-site scripting in splunk (CVE-2026-76367). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76364 |
|
SQL Injection in sqli (CVE-2026-76364)
SQL injection in sqli (CVE-2026-76364). Confidential information can be exposed externally.
|
| CVE-2026-76365 |
|
Vulnerability in sqli (CVE-2026-76365)
vulnerability in sqli (CVE-2026-76365). Confidential information can be exposed externally.
|
| CVE-2026-76359 |
|
Path Traversal in path-traversal (CVE-2026-76359)
path traversal in path-traversal (CVE-2026-76359). Data can be tampered with by attackers.
|
| CVE-2026-76358 |
|
Path Traversal in path-traversal (CVE-2026-76358)
path traversal in path-traversal (CVE-2026-76358). Data can be tampered with by attackers.
|
| CVE-2026-76361 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-76361)
SSRF in ssrf (CVE-2026-76361). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76347 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-76347)
SSRF in ssrf (CVE-2026-76347). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76345 |
|
Vulnerability in splunk (CVE-2026-76345)
vulnerability in splunk (CVE-2026-76345). Confidential information can be exposed externally.
|
| CVE-2026-76348 |
|
Vulnerability in dos (CVE-2026-76348)
vulnerability in dos (CVE-2026-76348). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76325 |
|
Cross-Site Scripting (XSS) in splunk (CVE-2026-76325)
cross-site scripting in splunk (CVE-2026-76325). Confidential information can be exposed externally.
|
| CVE-2026-76324 |
|
Cross-Site Scripting (XSS) in splunk (CVE-2026-76324)
cross-site scripting in splunk (CVE-2026-76324). Confidential information can be exposed externally.
|
| CVE-2026-76319 |
|
Vulnerability in splunk (CVE-2026-76319)
vulnerability in splunk (CVE-2026-76319). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76314 |
|
Code Injection in splunk (CVE-2026-76314)
code injection in splunk (CVE-2026-76314). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76313 |
|
Vulnerability in splunk (CVE-2026-76313)
vulnerability in splunk (CVE-2026-76313). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76309 |
|
SQL Injection in sqli (CVE-2026-76309)
SQL injection in sqli (CVE-2026-76309). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76252 |
|
Cross-Site Scripting (XSS) in splunk (CVE-2026-76252)
cross-site scripting in splunk (CVE-2026-76252). Confidential information can be exposed externally.
|
| CVE-2025-36254 |
|
Vulnerability in dos (CVE-2025-36254)
vulnerability in dos (CVE-2025-36254). Confidential information can be exposed externally.
|
| CVE-2026-59992 |
|
Vulnerability in next-tinacms-s3 (CVE-2026-59992)
vulnerability in next-tinacms-s3 (CVE-2026-59992). Risk of unauthorized operations or information disclosure. Exploitable via `DELETE /api/s3/media/x/anything-in-the-bucket`. Mitigation: upgrade to `23.0.4` or later.
|
| CVE-2026-19509 |
|
Vulnerability in dos (CVE-2026-19509)
vulnerability in dos (CVE-2026-19509). Risk of unauthorized operations or information disclosure. Exploitable via ``ssid_number``.
|
| CVE-2026-16886 |
|
Out-of-Bounds Write in dos (CVE-2026-16886)
out-of-bounds write in dos (CVE-2026-16886). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16897 |
|
Vulnerability in dos (CVE-2026-16897)
vulnerability in dos (CVE-2026-16897). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16890 |
|
Vulnerability in dos (CVE-2026-16890)
vulnerability in dos (CVE-2026-16890). Risk of unauthorized operations or information disclosure.
|