Vulnerability index

Browse CVEs

133 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wolfssl HIGH 7.5
CVE-2026-2645

In wolfSSL 5.8.2 and earlier, a logic flaw existed in the TLS 1.2 server state machine implementation. The server could incorrectly accept the Certif…

Fix: 5.8.4+
Fix from $1,950 2026-03-19
Wolfssl HIGH 7.1
CVE-2026-0819

A stack buffer overflow vulnerability exists in wolfSSL's PKCS7 SignedData encoding functionality. In wc_PKCS7_BuildSignedAttributes(), when adding c…

Fix: 5.9.0+
Fix from $1,950 2026-03-19
Wolfssl MEDIUM 5.3
CVE-2026-1005

Integer underflow in wolfSSL packet sniffer <= 5.8.4 allows an attacker to cause a buffer overflow in the AEAD decryption path by injecting a TLS rec…

Fix: after 5.8.4
Fix from $1,600 2026-03-19
Wolfssl MEDIUM 5.4
CVE-2025-12889

With TLS 1.2 connections a client can use any digest, specifically a weaker digest that is supported, rather than those in the CertificateRequest.

Patch available
Fix from $1,600 2025-11-22
Wolfssl HIGH 7.5
CVE-2025-12888

Vulnerability in X25519 constant-time cryptographic implementations due to timing side channels introduced by compiler optimizations and CPU architec…

Patch available
Fix from $1,950 2025-11-21
Wolfssl MEDIUM 6.5
CVE-2025-11933

Improper Input Validation in the TLS 1.3 CKS extension parsing in wolfSSL 5.8.2 and earlier on multiple platforms allows a remote unauthenticated att…

Fix: 5.8.4+
Fix from $1,600 2025-11-21
Wolfssl MEDIUM 5.3
CVE-2025-11936

Improper input validation in the TLS 1.3 KeyShareEntry parsing in wolfSSL v5.8.2 on multiple platforms allows a remote unauthenticated attacker to ca…

Fix: 5.8.4+
Fix from $1,600 2025-11-21
Wolfssl HIGH 8.2
CVE-2025-11931

Integer Underflow Leads to Out-of-Bounds Access in XChaCha20-Poly1305 Decrypt. This issue is hit specifically with a call to the function wc_XChaCha2…

Patch available
Fix from $1,950 2025-11-21
Wolfssl HIGH 7.5
CVE-2025-11935

With TLS 1.3 pre-shared key (PSK) a malicious or faulty server could ignore the request for PFS (perfect forward secrecy) and the client would contin…

Fix: 5.8.4+
Fix from $1,950 2025-11-21
Wolfssl CRITICAL 9.8
CVE-2025-7394

In the OpenSSL compatibility layer implementation, the function RAND_poll() was not behaving as expected and leading to the potential for predictable…

Fix: after 5.8.0
Fix from $2,300 2025-07-18
Wolfssl HIGH 8.8
CVE-2024-2881

Fault Injection vulnerability in wc_ed25519_sign_msg function in wolfssl/wolfcrypt/src/ed25519.c in WolfSSL wolfssl5.6.6 on Linux/Windows allows remo…

Mitigation only
Fix from $1,950 2024-08-30
Wolfssl HIGH 8.8
CVE-2024-1545

Fault Injection vulnerability in RsaPrivateDecryption function in wolfssl/wolfcrypt/src/rsa.c in WolfSSL wolfssl5.6.6 on Linux/Windows allows remote …

Patch available
Fix from $1,950 2024-08-29
Wolfssl MEDIUM 5.5
CVE-2024-1543

The side-channel protected T-Table implementation in wolfSSL up to version 5.6.5 protects against a side-channel attacker with cache-line resolution.…

Fix: 5.6.6+
Fix from $1,600 2024-08-29
Wolfssl HIGH 7.5
CVE-2024-5991

In function MatchDomainName(), input param str is treated as a NULL terminated string despite being user provided and unchecked. Specifically, the fu…

Fix: after 5.7.0
Fix from $1,950 2024-08-27
Wolfssl MEDIUM 5.9
CVE-2024-5288

An issue was discovered in wolfSSL before 5.7.0. A safe-error attack via Rowhammer, namely FAULT+PROBE, leads to ECDSA key disclosure. When WOLFSSL_C…

Fix: 5.7.2+
Fix from $1,600 2024-08-27
Wolfssl MEDIUM 5.3
CVE-2024-5814

A malicious TLS1.2 server can force a TLS1.3 client with downgrade capability to use a ciphersuite that it did not agree to and achieve a successful …

Fix: after 5.7.0
Fix from $1,600 2024-08-27
Wolfssl CRITICAL 9.1
CVE-2024-0901

Remotely executed SEGV and out of bounds read allows malicious packet sender to crash or cause an out of bounds read via sending a malformed packet w…

Fix: after 5.6.6
Fix from $2,300 2024-03-25
Wolfssl CRITICAL 9.1
CVE-2023-6936

In wolfSSL prior to 5.6.6, if callback functions are enabled (via the WOLFSSL_CALLBACKS flag), then a malicious TLS client or network attacker can tr…

Fix: 5.6.6+
Fix from $2,300 2024-02-20
Wolfssl MEDIUM 5.3
CVE-2023-6937

wolfSSL prior to 5.6.6 did not check that messages in one (D)TLS record do not span key boundaries. As a result, it was possible to combine (D)TLS me…

Fix: 5.6.6+
Fix from $1,600 2024-02-15
Wolfssl MEDIUM 5.9
CVE-2023-6935

wolfSSL SP Math All RSA implementation is vulnerable to the Marvin Attack, new variation of a timing Bleichenbacher style attack, when built with the…

Fix: after 5.6.4
Fix from $1,600 2024-02-09
Wolfssl HIGH 8.8
CVE-2023-3724

If a TLS 1.3 client gets neither a PSK (pre shared key) extension nor a KSE (key share extension) when connecting to a malicious server, a default pr…

Fix: 5.6.2+
Fix from $1,950 2023-07-17
Wolfssl CRITICAL 9.1
CVE-2022-42905

In wolfSSL before 5.5.2, if callback functions are enabled (via the WOLFSSL_CALLBACKS flag), then a malicious TLS 1.3 client or network attacker can …

Fix: 5.5.2+
Fix from $2,300 2022-11-07
Wolfssl MEDIUM 5.3
CVE-2022-42961

An issue was discovered in wolfSSL before 5.5.0. A fault injection attack on RAM via Rowhammer leads to ECDSA key disclosure. Users performing signin…

Fix: 5.5.0+
Fix from $1,600 2022-10-15
Wolfssl HIGH 7.5
CVE-2022-39173

In wolfSSL before 5.5.1, malicious clients can cause a buffer overflow during a TLS 1.3 handshake. This occurs when an attacker supposedly resumes a …

Fix: 5.5.1+
Fix from $1,950 2022-09-29
Wolfssl MEDIUM 5.9
CVE-2021-44718

wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sending crafted traffic from a Mac…

Fix: after 5.0.0
Fix from $1,600 2022-09-02
Wolfssl MEDIUM 5.9
CVE-2022-38153

An issue was discovered in wolfSSL before 5.5.0 (when --enable-session-ticket is used); however, only version 5.3.0 is exploitable. Man-in-the-middle…

Patch available
Fix from $1,600 2022-08-31
Wolfssl HIGH 7.5
CVE-2022-38152

An issue was discovered in wolfSSL before 5.5.0. When a TLS 1.3 client connects to a wolfSSL server and SSL_clear is called on its session, the serve…

Fix: 5.5.0+
Fix from $1,950 2022-08-31
Wolfssl HIGH 7.5
CVE-2022-34293

wolfSSL before 5.4.0 allows remote attackers to cause a denial of service via DTLS because a check for return-routability can be skipped.

Fix: 5.4.0+
Fix from $1,950 2022-08-08
Wolfssl HIGH 7.5
CVE-2022-25640

In wolfSSL before 5.2.0, a TLS 1.3 server cannot properly enforce a requirement for mutual authentication. A client can simply omit the certificate_v…

Fix: 5.2.0+
Fix from $1,950 2022-02-24
Wolfssl MEDIUM 6.5
CVE-2022-25638

In wolfSSL before 5.2.0, certificate validation may be bypassed during attempted authentication by a TLS 1.3 client to a TLS 1.3 server. This occurs …

Fix: 5.2.0+
Fix from $1,600 2022-02-24