Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 24

Количество 24

rocky логотип

RLSA-2026:15968

3 месяца назад

Moderate: libsoup3 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-19143

16 дней назад

ELSA-2026-19143: libsoup3 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-15968

3 месяца назад

ELSA-2026-15968: libsoup3 security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2026-4271

5 месяцев назад

A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS).

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2026-4271

5 месяцев назад

A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS).

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2026-4271

5 месяцев назад

A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS).

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2026-4271

5 месяцев назад

A flaw was found in libsoup, a library for handling HTTP requests. Thi ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2026-5119

4 месяца назад

A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2026-5119

4 месяца назад

A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2026-5119

4 месяца назад

A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.

CVSS3: 5.9
EPSS: Низкий
msrc логотип

CVE-2026-5119

4 месяца назад

Libsoup: libsoup: information disclosure via cleartext transmission of cookies during https tunnel establishment

EPSS: Низкий
debian логотип

CVE-2026-5119

4 месяца назад

A flaw was found in libsoup. When establishing HTTPS tunnels through a ...

CVSS3: 5.9
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20845-1

2 месяца назад

Security update for libsoup

EPSS: Низкий
github логотип

GHSA-xxmc-fm3p-q3x8

5 месяцев назад

A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS).

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2026-04362

6 месяцев назад

Уязвимость библиотеки доступа к HTTP серверам LibSoup, связанная с возможностью использования памяти после освобождения, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2026:19356

2 месяца назад

Moderate: libsoup security update

EPSS: Низкий
rocky логотип

RLSA-2026:14087

3 месяца назад

Moderate: libsoup security update

EPSS: Низкий
rocky логотип

RLSA-2026:13978

3 месяца назад

Moderate: libsoup security update

EPSS: Низкий
github логотип

GHSA-j666-j6hj-fpc7

4 месяца назад

A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.

CVSS3: 5.9
EPSS: Низкий
oracle-oval логотип

ELSA-2026-24722

около 1 месяца назад

ELSA-2026-24722: libsoup security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2026:15968

Moderate: libsoup3 security update

3 месяца назад
oracle-oval логотип
ELSA-2026-19143

ELSA-2026-19143: libsoup3 security update (MODERATE)

16 дней назад
oracle-oval логотип
ELSA-2026-15968

ELSA-2026-15968: libsoup3 security update (MODERATE)

3 месяца назад
ubuntu логотип
CVE-2026-4271

A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS).

CVSS3: 5.3
1%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-4271

A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS).

CVSS3: 5.3
1%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-4271

A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS).

CVSS3: 5.3
1%
Низкий
5 месяцев назад
debian логотип
CVE-2026-4271

A flaw was found in libsoup, a library for handling HTTP requests. Thi ...

CVSS3: 5.3
1%
Низкий
5 месяцев назад
ubuntu логотип
CVE-2026-5119

A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.

CVSS3: 5.9
0%
Низкий
4 месяца назад
redhat логотип
CVE-2026-5119

A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.

CVSS3: 5.9
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-5119

A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.

CVSS3: 5.9
0%
Низкий
4 месяца назад
msrc логотип
CVE-2026-5119

Libsoup: libsoup: information disclosure via cleartext transmission of cookies during https tunnel establishment

0%
Низкий
4 месяца назад
debian логотип
CVE-2026-5119

A flaw was found in libsoup. When establishing HTTPS tunnels through a ...

CVSS3: 5.9
0%
Низкий
4 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20845-1

Security update for libsoup

1%
Низкий
2 месяца назад
github логотип
GHSA-xxmc-fm3p-q3x8

A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Use-After-Free, occurs in the HTTP/2 server implementation. A remote attacker can exploit this by sending specially crafted HTTP/2 requests that cause authentication failures. This can lead to the application attempting to access memory that has already been freed, potentially causing application instability or crashes, resulting in a Denial of Service (DoS).

CVSS3: 5.3
1%
Низкий
5 месяцев назад
fstec логотип
BDU:2026-04362

Уязвимость библиотеки доступа к HTTP серверам LibSoup, связанная с возможностью использования памяти после освобождения, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
1%
Низкий
6 месяцев назад
rocky логотип
RLSA-2026:19356

Moderate: libsoup security update

0%
Низкий
2 месяца назад
rocky логотип
RLSA-2026:14087

Moderate: libsoup security update

0%
Низкий
3 месяца назад
rocky логотип
RLSA-2026:13978

Moderate: libsoup security update

0%
Низкий
3 месяца назад
github логотип
GHSA-j666-j6hj-fpc7

A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.

CVSS3: 5.9
0%
Низкий
4 месяца назад
oracle-oval логотип
ELSA-2026-24722

ELSA-2026-24722: libsoup security update (MODERATE)

около 1 месяца назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.