Количество 25 045
Количество 25 045
CVE-2026-56155
Active Directory Federation Services Elevation of Privilege Vulnerability
CVE-2026-56149
Allocation of Resources Without Limits or Throttling in Elasticsearch Leading to Denial of Service
CVE-2026-56145
Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service
CVE-2026-56132
In libexpat before 2.8.2, there is a heap-based buffer overflow in doProlog in xmlparse.c because scaffold backing array reallocation is mishandled when there is data-structure sharing across parsers.
CVE-2026-56131
libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_ResumeParser from within handlers in cases of a policy violation. Thus, a use-after-free can occur (similar to the CVE-2026-50219 situation).
CVE-2026-56123
socat 1.8.0.0 - 1.8.1.1 Heap Buffer Overflow via SOCKS5 Reply Parser
CVE-2026-56116
dhcpcd Memory Leak DoS via IPv6 Router Advertisement Handling
CVE-2026-56115
Bootimus 0.1.70 Broken Access Control via JWTMiddleware Authorization Bypass
CVE-2026-56003
libXfont2 computeProps Property Buffer Heap Buffer Overflow
CVE-2026-56002
libXfont2 PCF Font Parsing Heap Buffer Overflow
CVE-2026-56001
libXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow
CVE-2026-56000
xorg-x11-server / xwayland GLX contextTags Use-After-Free in CommonMakeCurrent()
CVE-2026-55999
xorg-server / xwayland glamor font atlas Heap Buffer Overflow
CVE-2026-55991
Remote DNS-over-QUIC (DoQ) flow-control assertion failure in libngtcp2
CVE-2026-55990
Packet of death for a DNSCrypt misconfigured Unbound
CVE-2026-55973
'dns-error-reporting: yes' leads to stack buffer overflow
CVE-2026-55967
AES-GCM streaming APIs do not reject >64 GiB cumulative single messages, enabling counter wrap and keystream reuse
CVE-2026-55964
Chain intermediate CA:TRUE without keyCertSign accepted as a signing CA (temporary CA exemption)
CVE-2026-55962
TLS 1.3 post-handshake authentication: server accepts Finished without client Certificate/CertificateVerify
CVE-2026-55961
wolfSSL_PKCS7_verify() reports success for degenerate (certs-only) PKCS#7 with no signer
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-56155 Active Directory Federation Services Elevation of Privilege Vulnerability | CVSS3: 7.8 | 2% Низкий | 20 дней назад | |
CVE-2026-56149 Allocation of Resources Without Limits or Throttling in Elasticsearch Leading to Denial of Service | 0% Низкий | около 1 месяца назад | ||
CVE-2026-56145 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service | 0% Низкий | 11 дней назад | ||
CVE-2026-56132 In libexpat before 2.8.2, there is a heap-based buffer overflow in doProlog in xmlparse.c because scaffold backing array reallocation is mishandled when there is data-structure sharing across parsers. | CVSS3: 6.9 | 0% Низкий | около 1 месяца назад | |
CVE-2026-56131 libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_ResumeParser from within handlers in cases of a policy violation. Thus, a use-after-free can occur (similar to the CVE-2026-50219 situation). | CVSS3: 4.9 | 0% Низкий | около 1 месяца назад | |
CVE-2026-56123 socat 1.8.0.0 - 1.8.1.1 Heap Buffer Overflow via SOCKS5 Reply Parser | 0% Низкий | около 1 месяца назад | ||
CVE-2026-56116 dhcpcd Memory Leak DoS via IPv6 Router Advertisement Handling | CVSS3: 6.5 | 0% Низкий | 27 дней назад | |
CVE-2026-56115 Bootimus 0.1.70 Broken Access Control via JWTMiddleware Authorization Bypass | 0% Низкий | около 1 месяца назад | ||
CVE-2026-56003 libXfont2 computeProps Property Buffer Heap Buffer Overflow | CVSS3: 8.5 | 0% Низкий | 25 дней назад | |
CVE-2026-56002 libXfont2 PCF Font Parsing Heap Buffer Overflow | CVSS3: 8.5 | 0% Низкий | 25 дней назад | |
CVE-2026-56001 libXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow | CVSS3: 8.5 | 0% Низкий | 25 дней назад | |
CVE-2026-56000 xorg-x11-server / xwayland GLX contextTags Use-After-Free in CommonMakeCurrent() | 0% Низкий | 25 дней назад | ||
CVE-2026-55999 xorg-server / xwayland glamor font atlas Heap Buffer Overflow | 0% Низкий | 25 дней назад | ||
CVE-2026-55991 Remote DNS-over-QUIC (DoQ) flow-control assertion failure in libngtcp2 | CVSS3: 5.9 | 0% Низкий | 11 дней назад | |
CVE-2026-55990 Packet of death for a DNSCrypt misconfigured Unbound | CVSS3: 5.9 | 0% Низкий | 11 дней назад | |
CVE-2026-55973 'dns-error-reporting: yes' leads to stack buffer overflow | CVSS3: 7.5 | 0% Низкий | 11 дней назад | |
CVE-2026-55967 AES-GCM streaming APIs do not reject >64 GiB cumulative single messages, enabling counter wrap and keystream reuse | 0% Низкий | около 1 месяца назад | ||
CVE-2026-55964 Chain intermediate CA:TRUE without keyCertSign accepted as a signing CA (temporary CA exemption) | 0% Низкий | около 1 месяца назад | ||
CVE-2026-55962 TLS 1.3 post-handshake authentication: server accepts Finished without client Certificate/CertificateVerify | 0% Низкий | около 1 месяца назад | ||
CVE-2026-55961 wolfSSL_PKCS7_verify() reports success for degenerate (certs-only) PKCS#7 with no signer | 0% Низкий | около 1 месяца назад |
Уязвимостей на страницу