Vulnerability index

Browse CVEs

5,200 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
HIGH 7.5 CVE-2026-20875 Null pointer dereference in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker to deny service over a network. Windows 10 1607 10.0.14393.8783 / 10.0.17763.8276+ Fix from $1,9502026-01-13 MEDIUM 6.2 CVE-2025-8090 Null pointer dereference in the MsgRegisterEvent() system call could allow an attacker with local access and code execution abilities to crash the QN… Mitigation only Fix from $1,6002026-01-13 MEDIUM 5.5 CVE-2025-71098 In the Linux kernel, the following vulnerability has been resolved: ip6_gre: make ip6gre_header() robust Over the years, syzbot found many ways to … Linux Kernel 5.10.248 / 5.15.198+ Fix from $1,6002026-01-13 MEDIUM 5.5 CVE-2025-71083 In the Linux kernel, the following vulnerability has been resolved: drm/ttm: Avoid NULL pointer deref for evicted BOs It is possible for a BO to ex… Linux Kernel 5.15.198 / 6.1.160+ Fix from $1,6002026-01-13 MEDIUM 5.5 CVE-2025-15504 A security flaw has been discovered in lief-project LIEF up to 0.17.1. Affected by this issue is the function Parser::parse_binary of the file src/EL… Lief 0.17.2+ Fix from $1,6002026-01-10 HIGH 7.5 CVE-2025-53477 NULL Pointer Dereference vulnerability in Apache Nimble. Missing validation of HCI connection complete or HCI command TX buffer could lead to NULL p… Nimble 1.9.0+ Fix from $1,9502026-01-10 MEDIUM 5.3 CVE-2026-22693 HarfBuzz is a text shaping engine. Prior to version 12.3.0, a null pointer dereference vulnerability exists in the SubtableUnicodesCache::create func… Harfbuzz 12.3.0+ Fix from $1,6002026-01-10 HIGH 7.5 CVE-2025-56225 fluidsynth-2.4.6 and earlier versions is vulnerable to Null pointer dereference in fluid_synth_monopoly.c, that can be triggered when loading an inva… Fluidsynth after 2.4.6 Fix from $1,9502026-01-09 HIGH 7.5 CVE-2026-0731 A vulnerability has been found in TOTOLINK WA1200 5.9c.2914. The impacted element is an unknown function of the file cstecgi.cgi of the component HTT… Wa1200 Poe No fix yet Fix from $1,9502026-01-08 HIGH 7.5 CVE-2025-69259 A message unchecked NULL return value vulnerability in Trend Micro Apex Central could allow a remote attacker to create a denial-of-service condition… Apex Central No fix yet Fix from $1,9502026-01-08 HIGH 8.8 CVE-2026-21688 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,9502026-01-07 MEDIUM 6.5 CVE-2026-21689 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 MEDIUM 6.5 CVE-2026-21691 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 HIGH 7.5 CVE-2026-21680 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,9502026-01-07 MEDIUM 5.5 CVE-2026-21502 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 MEDIUM 5.5 CVE-2026-21503 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 MEDIUM 5.5 CVE-2026-21506 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 MEDIUM 5.5 CVE-2026-21496 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 MEDIUM 5.5 CVE-2026-21497 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 MEDIUM 5.5 CVE-2026-21498 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 MEDIUM 5.5 CVE-2026-21499 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 MEDIUM 6.5 CVE-2025-14631 A NULL Pointer Dereference vulnerability in TP-Link Archer BE400 V1(802.11 modules) allows  an adjacent attacker to cause a denial-of-service (DoS) … Archer Be400 Firmware after 1.1.0 Fix from $1,6002026-01-07 MEDIUM 5.5 CVE-2026-21492 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,6002026-01-06 HIGH 8.8 CVE-2026-21485 iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below are prone to have Undefined B… Iccdev 2.3.1.2+ Fix from $1,9502026-01-06 MEDIUM 6.5 CVE-2025-20793 In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a r… Nr15 Mitigation only Fix from $1,6002026-01-06 MEDIUM 6.5 CVE-2025-53592 A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user accoun… Quts Hero Mitigation only Fix from $1,6002026-01-02 MEDIUM 6.5 CVE-2025-44013 A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user accoun… Quts Hero Mitigation only Fix from $1,6002026-01-02 HIGH 7.5 CVE-2025-65411 A NULL pointer dereference in the src/path.c component of GNU Unrtf v0.21.10 allows attackers to cause a Denial of Service (DoS) via injecting a craf… Unrtf No fix yet Fix from $1,9502025-12-30 MEDIUM 5.5 CVE-2023-54321 In the Linux kernel, the following vulnerability has been resolved: driver core: fix potential null-ptr-deref in device_add() I got the following n… Linux Kernel 5.10.249 / 5.15.99+ Fix from $1,6002025-12-30 HIGH 7.5 CVE-2025-14180 In PHP versions 8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.29, 8.4.* before 8.4.16, 8.5.* before 8.5.1 when using the PDO PostgreSQL … PHP 8.1.34 / 8.2.30+ Fix from $1,9502025-12-27