Количество 25 045
Количество 25 045
CVE-2026-4426
Libarchive: libarchive: denial of service via malformed iso file processing
CVE-2026-4424
Libarchive: libarchive: information disclosure via heap out-of-bounds read in rar archive processing
CVE-2026-44210
Kata Containers have VM Escape via virtiofsd Argument Injection through Default-Enabled Pod Annotations
CVE-2026-44186
Apache HTTP Server: Loop in `proxy_ftp_handler` in mod_proxy_ftp
CVE-2026-44185
Apache HTTP Server: Stack Buffer Over-Read in mod_ssl OCSP `send_request`
CVE-2026-44119
Apache HTTP Server: escalation of privilege through expressions in .htaccess in multiple modules
CVE-2026-43973
gun HTTP/1.1 response buffer has no size limit allowing server-controlled memory exhaustion
CVE-2026-43970
Decompression Bomb in cow_spdy:inflate/2 Allows Memory Exhaustion via Crafted SPDY Frame
CVE-2026-43969
Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/1
CVE-2026-43968
CR Injection in SSE Encoder Enables Event Splitting via cow_sse:event/1
CVE-2026-43966
HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/2
CVE-2026-43964
Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number.
CVE-2026-4395
Heap-based buffer overflow in wc_ecc_import_x963_ex KCAPI path
CVE-2026-43958
Rrdtool: rrdtool: stack buffer overflow allows local code execution or denial of service
CVE-2026-43951
Apache HTTP Server: OOB Read in `merge_response_headers` can cause crash
CVE-2026-43896
jq: Stack Overflow in Recursive Object Merge
CVE-2026-43895
jq: Embedded NUL in jq import paths causes local redaction-policy bypass and preserves sensitive fields in published artifacts
CVE-2026-43894
jq: Wild stack write via signed-integer overflow in decNumber D2U() macro
CVE-2026-43870
Apache Thrift: Node.js web_server.js multi-vulnerability
CVE-2026-43869
Apache Thrift: TSSLTransportFactory.java hostname verification
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-4426 Libarchive: libarchive: denial of service via malformed iso file processing | CVSS3: 6.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-4424 Libarchive: libarchive: information disclosure via heap out-of-bounds read in rar archive processing | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-44210 Kata Containers have VM Escape via virtiofsd Argument Injection through Default-Enabled Pod Annotations | 0% Низкий | 12 дней назад | ||
CVE-2026-44186 Apache HTTP Server: Loop in `proxy_ftp_handler` in mod_proxy_ftp | 1% Низкий | около 2 месяцев назад | ||
CVE-2026-44185 Apache HTTP Server: Stack Buffer Over-Read in mod_ssl OCSP `send_request` | 1% Низкий | около 1 месяца назад | ||
CVE-2026-44119 Apache HTTP Server: escalation of privilege through expressions in .htaccess in multiple modules | 0% Низкий | около 2 месяцев назад | ||
CVE-2026-43973 gun HTTP/1.1 response buffer has no size limit allowing server-controlled memory exhaustion | 0% Низкий | около 1 месяца назад | ||
CVE-2026-43970 Decompression Bomb in cow_spdy:inflate/2 Allows Memory Exhaustion via Crafted SPDY Frame | 1% Низкий | 3 месяца назад | ||
CVE-2026-43969 Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/1 | 0% Низкий | 3 месяца назад | ||
CVE-2026-43968 CR Injection in SSE Encoder Enables Event Splitting via cow_sse:event/1 | 0% Низкий | 3 месяца назад | ||
CVE-2026-43966 HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/2 | 0% Низкий | около 1 месяца назад | ||
CVE-2026-43964 Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number. | CVSS3: 3.7 | 0% Низкий | 3 месяца назад | |
CVE-2026-4395 Heap-based buffer overflow in wc_ecc_import_x963_ex KCAPI path | 0% Низкий | 4 месяца назад | ||
CVE-2026-43958 Rrdtool: rrdtool: stack buffer overflow allows local code execution or denial of service | CVSS3: 7.8 | 0% Низкий | 2 месяца назад | |
CVE-2026-43951 Apache HTTP Server: OOB Read in `merge_response_headers` can cause crash | 1% Низкий | около 2 месяцев назад | ||
CVE-2026-43896 jq: Stack Overflow in Recursive Object Merge | CVSS3: 6.2 | 0% Низкий | 3 месяца назад | |
CVE-2026-43895 jq: Embedded NUL in jq import paths causes local redaction-policy bypass and preserves sensitive fields in published artifacts | CVSS3: 4.4 | 0% Низкий | 3 месяца назад | |
CVE-2026-43894 jq: Wild stack write via signed-integer overflow in decNumber D2U() macro | 0% Низкий | 3 месяца назад | ||
CVE-2026-43870 Apache Thrift: Node.js web_server.js multi-vulnerability | 0% Низкий | 3 месяца назад | ||
CVE-2026-43869 Apache Thrift: TSSLTransportFactory.java hostname verification | 1% Низкий | 3 месяца назад |
Уязвимостей на страницу