CVE-2026-32287 Infinite loop in github.com/antchfx/xpath

Information published.


CVE-2026-29785 NATS Server panic via malicious compression on leafnode port

Information published.


CVE-2026-33216 NATS has MQTT plaintext password disclosure

Information published.


CVE-2026-33416 LIBPNG has use-after-free via pointer aliasing in `png_set_tRNS` and `png_set_PLTE`

Information published.


CVE-2026-2436 Libsoup: libsoup: denial of service via use-after-free in soupserver during tls handshake

Information published.


CVE-2026-4732 Out-of-bounds Read Overflow in tildearrow/furnace

Information published.


CVE-2026-4897 Polkit: polkit: denial of service via unbounded input processing through standard input

Information published.


CVE-2026-33636 LIBPNG has ARM NEON Palette Expansion Out-of-Bounds Read on AArch64

Information published.


CVE-2026-34043 Serialize JavaScript has CPU Exhaustion Denial of Service via crafted array-like objects

Information published.


CVE-2026-33936 python-ecdsa: Denial of Service via improper DER length validation in crafted private keys

Information published.


This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

AbuseIPDB Contributor Badge