Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
CVE-2026-41676
rust-openssl: Deriver::derive and PkeyCtxRef::derive can overflow short buffers on OpenSSL 1.1.1
CVE-2026-41677
rust-opennssl has an Out-of-bounds read in PEM password callback when returning an oversized length
CVE-2026-41678
rust-openssl has incorrect bounds assertion in aes key wrap
CVE-2026-41681
rust-openssl: rustMdCtxRef::digest_final() writes past caller buffer with no length check
rust-openssl: Unchecked callback length in PSK/cookie trampolines leaks adjacent memory to peer
CVE-2026-40937
RustFS: Missing admin authorization on notification target endpoints allows unauthenticated configuration of event webhooks
CVE-2026-34066
nimiq-blockchain: Peer-triggerable panic during history sync
CVE-2026-34068
nimiq-transaction: UpdateValidator transactions allows voting key change without proof-of-knowledge
CVE-2026-34067
nimiq-transaction: Panic via `HistoryTreeProof` length mismatch
CVE-2026-34065
nimiq-primitives: Node crash due to missing interlink validation in election macro block proposals
CVE-2026-34064
nimiq-account: Vesting insufficient funds error can panic
CVE-2026-33471
nimiq-block has skip block quorum bypass via out-of-range BitSet indices & u16 truncation
actix-http has HTTP/1.1 CL.TE Request Smuggling
CVE-2026-41197
Brillig: Heap corruption in foreign call results with nested tuple arrays
Malicious code in mysten_metrics (crates.io)
Zebra Vulnerable to Consensus Divergence in Transparent Sighash Hash-Type Handling
Zebra Vulnerable to Denial of Service via Interrupted JSON-RPC Requests from Authenticated Clients
Zebra has rk Identity Point Panic in Transaction Verification
CVE-2026-40881
Zebra: addr/addrv2 Deserialization Resource Exhaustion
CVE-2026-40880
Zebra: Cached Mempool Verification Bypasses Consensus Rules for Ahead-of-Tip Blocks
Showing 1 - 20 of 1,000+ results