Total CVEs

125,920

Critical Severity

2,280

High Severity

7,890

Last 7 Days

1,019
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 221 - 240 of 22,325 CVEs
CVE-2026-6522 MEDIUM - 5.5

RPKI-Router protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-6521 MEDIUM - 5.5

OpenFlow v5 protocol dissector infinite loops in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-6520 MEDIUM - 5.5

OpenFlow v6 protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-6519 MEDIUM - 5.5

MBIM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-5657 MEDIUM - 5.5

iLBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-5655 MEDIUM - 5.5

SDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-5654 MEDIUM - 5.5

AMR-NB codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-5653 MEDIUM - 5.5

DCP-ETSI protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-5409 MEDIUM - 5.5

Monero protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-5408 MEDIUM - 5.5

BT-DHT protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-5407 MEDIUM - 5.5

SMB2 protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-5406 MEDIUM - 5.5

FC-SWILS protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-5402 HIGH - 8.8

TLS protocol dissector heap overflow in Wireshark 4.6.0 to 4.6.4 allows denial of service and possible code execution

Published: Apr 30, 2026
Source: NVD
CVE-2026-5401 MEDIUM - 5.5

AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-5299 MEDIUM - 5.5

ICMPv6 PvD protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD
CVE-2026-42798 MEDIUM - 4.0

Little CMS (lcms2) 2.16 through 2.18 before 2.19 has an integer overflow in ParseCube in cmscgats.c.

Vendor: littlecms
Product: little cms color engine
Published: Apr 30, 2026
Source: NVD
CVE-2026-42511 HIGH - 7.3

The BOOTP file field is written to the lease file without escaping embedded double-quotes, allowing injection of arbitrary dhclient.conf directives. When the lease file is subsequently re-parsed by dhclient, e.g., after a system restart, an attacker-controlled field from the lease is passed to dhcl...

Vendor: FreeBSD
Product: FreeBSD
Published: Apr 30, 2026
Source: NVD
CVE-2026-41226 MEDIUM - 6.1

Open redirect vulnerability exists in Multiple laser printers and MFPs which implement Ricoh Web Image Monitor. When accessing a specially crafted URL, the user may be redirected to an arbitrary website. As a result, the user may become a victim of a phishing attack.

Vendor: Ricoh Company, Ltd.
Product: Multiple laser printers and MFPs which implement Web Image Monitor
Published: Apr 30, 2026
Source: NVD

Unauthenticated attackers can exploit a weakness in the XML parser functionality of the SOAP endpoints in 4D server. This allows them to obtain read access to files on the application server and adjacent network shares, and perform HTTP GET requests to arbitrary services.

Vendor: 4D
Product: 4D Server
Published: Apr 30, 2026
Source: NVD
CVE-2026-7379 MEDIUM - 5.5

Memory leak in sharkd 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Published: Apr 30, 2026
Source: NVD