Vulnerability index

Browse CVEs

5,200 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Ella Core MEDIUM 6.5
CVE-2026-34761

Ella Core is a 5G core designed for private networks. Prior to version 1.8.0, Ella Core panics when processing a NGAP handover failure message. An at…

Fix: 1.8.0+
Fix from $1,600 2026-04-02
Suricata HIGH 7.5
CVE-2026-31931

Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before version 8.0.4, use of the "tls.alpn" rule keyword can cause Suricata to c…

Fix: 8.0.4+
Fix from $1,950 2026-04-02
Mbed Tls HIGH 7.5
CVE-2026-34874

An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There is a NULL pointer dereference in distinguished name parsing that allow…

Fix: 3.6.6+
Fix from $1,950 2026-04-01
Pdf Editor MEDIUM 5.5
CVE-2026-3776

The application does not validate the presence of required appearance (AP) data before accessing stamp annotation resources. When a PDF contains a st…

Fix: after 2025.3.0.69570
Fix from $1,600 2026-04-01
Iccdev MEDIUM 5.5
CVE-2026-34551

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to version 2.3.1.6, a null-pointer dereference (NP…

Fix: 2.3.1.6+
Fix from $1,600 2026-03-31
Iccdev MEDIUM 5.5
CVE-2026-34552

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to version 2.3.1.6, there is an Undefined Behavior…

Fix: 2.3.1.6+
Fix from $1,600 2026-03-31
Iccdev MEDIUM 5.5
CVE-2026-34541

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to version 2.3.1.6, a crafted ICC profile can trig…

Fix: 2.3.1.6+
Fix from $1,600 2026-03-31
Nanomq HIGH 7.5
CVE-2026-32696

NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. In NanoMQ version 0.24.6, after enabling auth.http_auth (HTTP authentication), …

Fix: 0.24.7+
Fix from $1,950 2026-03-30
Libjwt MEDIUM 5.5
CVE-2026-33996

LibJWT is a C JSON Web Token Library. Starting in version 3.0.0 and prior to version 3.3.0, the JWK parsing for RSA-PSS did not protect against a NUL…

Fix: 3.3.0+
Fix from $1,600 2026-03-27
Ella Core MEDIUM 6.5
CVE-2026-33907

Ella Core is a 5G core designed for private networks. Versions prior to 1.7.0 panic when processing Authentication Response and Authentication Failur…

Fix: 1.7.0+
Fix from $1,600 2026-03-27
Ella Core MEDIUM 6.5
CVE-2026-33903

Ella Core is a 5G core designed for private networks. Versions prior to 1.7.0 panic when processing a specially crafted NGAP LocationReport message. …

Fix: 1.7.0+
Fix from $1,600 2026-03-27
Linux Kernel MEDIUM 5.5
CVE-2026-23398

In the Linux kernel, the following vulnerability has been resolved: icmp: fix NULL pointer dereference in icmp_tag_validation() icmp_tag_validation…

Fix: 5.10.253 / 5.15.203+
Fix from $1,600 2026-03-26
Linux Kernel MEDIUM 5.5
CVE-2026-23396

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix NULL deref in mesh_matches_local() mesh_matches_local() unc…

Fix: 5.10.253 / 5.15.203+
Fix from $1,600 2026-03-26
FreeBSD HIGH 7.5
CVE-2026-4652

On a system exposing an NVMe/TCP target, a remote client can trigger a kernel panic by sending a CONNECT command for an I/O queue with a bogus or sta…

Mitigation only
Fix from $1,950 2026-03-26
Nats Server HIGH 7.5
CVE-2026-29785

NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.14 and 2.12.5, if the nats-ser…

Fix: 2.11.14 / 2.12.5+
Fix from $1,950 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23381

In the Linux kernel, the following vulnerability has been resolved: net: bridge: fix nd_tbl NULL dereference when IPv6 is disabled When booting wit…

Fix: 5.10.253 / 5.15.203+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23382

In the Linux kernel, the following vulnerability has been resolved: HID: Add HID_CLAIMED_INPUT guards in raw_event callbacks missing them In commit…

Fix: 5.10.253 / 5.15.203+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23369

In the Linux kernel, the following vulnerability has been resolved: i2c: i801: Revert "i2c: i801: replace acpi_lock with I2C bus lock" This reverts…

Fix: 6.12.77 / 6.18.17+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23366

In the Linux kernel, the following vulnerability has been resolved: drm/client: Do not destroy NULL modes 'modes' in drm_client_modeset_probe may f…

Fix: 6.18.17 / 6.19.7+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23349

In the Linux kernel, the following vulnerability has been resolved: HID: pidff: Fix condition effect bit clearing As reported by MPDarkGuy on disco…

Fix: 6.18.17 / 6.19.7+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23353

In the Linux kernel, the following vulnerability has been resolved: ice: fix crash in ethtool offline loopback test Since the conversion of ice to …

Fix: 6.19.7+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23341

In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix crash when destroying a suspended hardware context If usersp…

Fix: 6.19.7+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23332

In the Linux kernel, the following vulnerability has been resolved: cpufreq: intel_pstate: Fix crash during turbo disable When the system is booted…

Fix: 6.18.17 / 6.19.7+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23328

In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix NULL pointer dereference of mgmt_chann mgmt_chann may be set…

Fix: 6.19.7+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23304

In the Linux kernel, the following vulnerability has been resolved: ipv6: fix NULL pointer deref in ip6_rt_get_dev_rcu() l3mdev_master_dev_rcu() ca…

Fix: 5.10.253 / 5.15.203+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23309

In the Linux kernel, the following vulnerability has been resolved: tracing: Add NULL pointer check to trigger_data_free() If trigger_data_alloc() …

Fix: 6.1.167 / 6.6.130+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23300

In the Linux kernel, the following vulnerability has been resolved: net: ipv6: fix panic when IPv4 route references loopback IPv6 nexthop When a st…

Fix: 5.10.253 / 5.15.203+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23293

In the Linux kernel, the following vulnerability has been resolved: net: vxlan: fix nd_tbl NULL dereference when IPv6 is disabled When booting with…

Fix: 5.10.253 / 5.15.203+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23285

In the Linux kernel, the following vulnerability has been resolved: drbd: fix null-pointer dereference on local read error In drbd_request_endio(),…

Fix: 6.6.130 / 6.12.77+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23286

In the Linux kernel, the following vulnerability has been resolved: atm: lec: fix null-ptr-deref in lec_arp_clear_vccs syzkaller reported a null-pt…

Fix: 5.10.253 / 5.15.203+
Fix from $1,600 2026-03-25