Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: attack-types Clear
ID Title
CVE-2026-76923 Out-of-Bounds Read in dos (CVE-2026-76923)
vulnerability in dos (CVE-2026-76923). Risk of unauthorized operations or information disclosure.
CVE-2026-76924 Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76926 BUSMASTER file parser abnormal exit in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
BUSMASTER file parser abnormal exit in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76927 H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76928 X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76929 Pcapng file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Pcapng file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76890 Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76891 Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76917 Vulnerability in dos (CVE-2026-76917)
vulnerability in dos (CVE-2026-76917). Risk of unauthorized operations or information disclosure.
CVE-2026-76918 SSH protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
SSH protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76919 ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76920 3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76921 CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76922 Vulnerability in dos (CVE-2026-76922)
vulnerability in dos (CVE-2026-76922). Risk of unauthorized operations or information disclosure.
CVE-2026-76882 Out-of-Bounds Read in dos (CVE-2026-76882)
vulnerability in dos (CVE-2026-76882). Risk of unauthorized operations or information disclosure.
CVE-2026-76883 Catapult DCT2000 file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Catapult DCT2000 file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76884 ERF file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
ERF file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76885 Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76886 C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76887 Vulnerability in dos (CVE-2026-76887)
vulnerability in dos (CVE-2026-76887). Risk of unauthorized operations or information disclosure.
CVE-2026-76888 RDP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
RDP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76889 UMTS FP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
UMTS FP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76879 C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76880 RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76881 CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76850 Unsafe Deserialization in deserialization (CVE-2026-76850)
vulnerability in deserialization (CVE-2026-76850). Successful exploitation can lead to full system takeover. Exploitable via `POST /distserve/p2p_initialize`.
CVE-2026-76832 Path Traversal in path-traversal (CVE-2026-76832)
path traversal in path-traversal (CVE-2026-76832). Successful exploitation can lead to full system takeover.
CVE-2026-76395 Unsafe Deserialization in deserialization (CVE-2026-76395)
vulnerability in deserialization (CVE-2026-76395). Successful exploitation can lead to full system takeover.
CVE-2026-76367 Cross-Site Scripting (XSS) in splunk (CVE-2026-76367)
cross-site scripting in splunk (CVE-2026-76367). Risk of unauthorized operations or information disclosure.
CVE-2026-76364 SQL Injection in sqli (CVE-2026-76364)
SQL injection in sqli (CVE-2026-76364). Confidential information can be exposed externally.
CVE-2026-76365 Vulnerability in sqli (CVE-2026-76365)
vulnerability in sqli (CVE-2026-76365). Confidential information can be exposed externally.
CVE-2026-76359 Path Traversal in path-traversal (CVE-2026-76359)
path traversal in path-traversal (CVE-2026-76359). Data can be tampered with by attackers.
CVE-2026-76358 Path Traversal in path-traversal (CVE-2026-76358)
path traversal in path-traversal (CVE-2026-76358). Data can be tampered with by attackers.
CVE-2026-76361 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-76361)
SSRF in ssrf (CVE-2026-76361). Risk of unauthorized operations or information disclosure.
CVE-2026-76347 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-76347)
SSRF in ssrf (CVE-2026-76347). Risk of unauthorized operations or information disclosure.
CVE-2026-76345 Vulnerability in splunk (CVE-2026-76345)
vulnerability in splunk (CVE-2026-76345). Confidential information can be exposed externally.
CVE-2026-76348 Vulnerability in dos (CVE-2026-76348)
vulnerability in dos (CVE-2026-76348). Risk of unauthorized operations or information disclosure.
CVE-2026-76325 Cross-Site Scripting (XSS) in splunk (CVE-2026-76325)
cross-site scripting in splunk (CVE-2026-76325). Confidential information can be exposed externally.
CVE-2026-76324 Cross-Site Scripting (XSS) in splunk (CVE-2026-76324)
cross-site scripting in splunk (CVE-2026-76324). Confidential information can be exposed externally.
CVE-2026-76319 Vulnerability in splunk (CVE-2026-76319)
vulnerability in splunk (CVE-2026-76319). Successful exploitation can lead to full system takeover.
CVE-2026-76314 Code Injection in splunk (CVE-2026-76314)
code injection in splunk (CVE-2026-76314). Successful exploitation can lead to full system takeover.
CVE-2026-76313 Vulnerability in splunk (CVE-2026-76313)
vulnerability in splunk (CVE-2026-76313). Successful exploitation can lead to full system takeover.
CVE-2026-76309 SQL Injection in sqli (CVE-2026-76309)
SQL injection in sqli (CVE-2026-76309). Risk of unauthorized operations or information disclosure.
CVE-2026-76252 Cross-Site Scripting (XSS) in splunk (CVE-2026-76252)
cross-site scripting in splunk (CVE-2026-76252). Confidential information can be exposed externally.
CVE-2025-36254 Vulnerability in dos (CVE-2025-36254)
vulnerability in dos (CVE-2025-36254). Confidential information can be exposed externally.
CVE-2026-59992 Vulnerability in next-tinacms-s3 (CVE-2026-59992)
vulnerability in next-tinacms-s3 (CVE-2026-59992). Risk of unauthorized operations or information disclosure. Exploitable via `DELETE /api/s3/media/x/anything-in-the-bucket`. Mitigation: upgrade to `23.0.4` or later.
CVE-2026-19509 Vulnerability in dos (CVE-2026-19509)
vulnerability in dos (CVE-2026-19509). Risk of unauthorized operations or information disclosure. Exploitable via ``ssid_number``.
CVE-2026-16886 Out-of-Bounds Write in dos (CVE-2026-16886)
out-of-bounds write in dos (CVE-2026-16886). Risk of unauthorized operations or information disclosure.
CVE-2026-16897 Vulnerability in dos (CVE-2026-16897)
vulnerability in dos (CVE-2026-16897). Risk of unauthorized operations or information disclosure.
CVE-2026-16890 Vulnerability in dos (CVE-2026-16890)
vulnerability in dos (CVE-2026-16890). Risk of unauthorized operations or information disclosure.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →