<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – OpenSSL</title>
  <link>https://cvedaily.com/pages/tags/openssl.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/openssl.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – OpenSSL</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:29 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2022-49036 – An inclusion of functionality from untrusted control sphere vulnerability in Ope...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-49036</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-49036</guid>
    <pubDate>Wed, 03 Jun 2026 14:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-49036</strong></p>
  <p>An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration in Synology Active Backup for Business Recovery Media Creator before 2.5.0-2081 allows local users to execute arbitrary code via unspecified vectors.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-829</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-49036">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-4991 – Tychon includes an OpenSSL component that specifies an OPENSSLDIR variable as a ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-4991</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-4991</guid>
    <pubDate>Mon, 01 Jun 2026 17:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-4991</strong></p>
  <p>Tychon includes an OpenSSL component that specifies an OPENSSLDIR variable as a subdirectory that may be controllable by an unprivileged user on Windows. Tychon contains a privileged service that uses this OpenSSL component. A user who can place a specially-crafted openssl.cnf file at an appropriate path may be able to achieve arbitrary code execution with SYSTEM privileges.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-4991">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-52945 – Uncontrolled search path element vulnerability in OpenSSL DLL component in Synol...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-52945</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-52945</guid>
    <pubDate>Wed, 27 May 2026 09:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-52945</strong></p>
  <p>Uncontrolled search path element vulnerability in OpenSSL DLL component in Synology BeeDrive for desktop before 1.3.2-13814 allows local users to execute arbitrary code via unspecified vectors.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-52945">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-8647 – Crypt::ScryptKDF versions through 0.010 for Perl uses insecure random number sou...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8647</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8647</guid>
    <pubDate>Tue, 26 May 2026 23:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-8647</strong></p>
  <p>Crypt::ScryptKDF versions through 0.010 for Perl uses insecure random number source when no CSPRNG module is available.  The random_bytes function fell back to using the built-in rand() function when none of the Perl modules Crypt::PRNG, Crypt::OpenSSL::Random, Net::SSLeay, Crypt::Random, or Bytes::Random::Secure were available.</p>
  <p><strong>CVSS:</strong> 4.8 · <strong>CWE:</strong> CWE-338</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8647">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-48697 – FastNetMon Community Edition through 1.2.9 does not verify TLS certificates on o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-48697</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-48697</guid>
    <pubDate>Tue, 26 May 2026 17:16:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-48697</strong></p>
  <p>FastNetMon Community Edition through 1.2.9 does not verify TLS certificates on outbound HTTPS connections. The execute_web_request_secure() function in src/fast_library.cpp creates a boost::asio::ssl::context with tls_client mode and calls set_default_verify_paths() to load CA certificates, but never calls set_verify_mode(boost::asio::ssl::verify_peer). Without this call, OpenSSL performs the TLS…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-48697">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-32253 – Sunshine is a self-hosted game stream host for Moonlight. In versions prior to 2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32253</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32253</guid>
    <pubDate>Fri, 22 May 2026 17:16:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-32253</strong></p>
  <p>Sunshine is a self-hosted game stream host for Moonlight. In versions prior to 2026.516.143833, the client-certificate authentication can be bypassed because of how OpenSSL verification results are handled. In src/crypto.cpp, the custom verify callback treats X509_V_ERR_UNABLE_TO_GET_ISSUER_CERT_LOCALLY, X509_V_ERR_CERT_NOT_YET_VALID, and X509_V_ERR_CERT_HAS_EXPIRED as success. This can allow an…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32253">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-14575 – An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-14575</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-14575</guid>
    <pubDate>Tue, 19 May 2026 14:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-14575</strong></p>
  <p>An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate file placed in the application's working directory.</p>
  <p><strong>CVSS:</strong> 1.8 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-14575">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-8721 – Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl truncates passwords with e...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8721</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8721</guid>
    <pubDate>Sun, 17 May 2026 19:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-8721</strong></p>
  <p>Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl truncates passwords with embedded NULLs.  Password parameters in PKCS12.xs are declared char *, which routes through Perl's default typemap to SvPV_nolen.  The Perl length is discarded.  The C code (or OpenSSL internally) calls strlen() on the buffer.  Any password byte at or after the first NULL is silently dropped. Binary / KDF-derived / HMA…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-170</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8721">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-8507 – Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl have out-of-bounds (OOB) w...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8507</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8507</guid>
    <pubDate>Sun, 17 May 2026 19:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-8507</strong></p>
  <p>Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl have out-of-bounds (OOB) write flaws.  When parsing a PKCS12 file, with a >= 1 GiB OCTET STRING (or BIT STRING) attribute on a SAFEBAG, via info() or info_as_hash(), a heap out-of-bounds write would be triggered with remote-code-execution potential (RCE) due to a signed integer overflow in the size calculation passed to Renew().</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8507">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-44699 – LibJWT is a C JSON Web Token Library. From 3.0.0 to 3.3.2, libjwt accepts an RSA...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44699</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44699</guid>
    <pubDate>Fri, 15 May 2026 17:16:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-44699</strong></p>
  <p>LibJWT is a C JSON Web Token Library. From 3.0.0 to 3.3.2, libjwt accepts an RSA JWK that does not contain an alg parameter as the verification key for an HS256/HS384/HS512 token. In the OpenSSL backend, this causes HMAC verification to run with a zero-length key, so an attacker can forge a valid JWT without knowing any secret or RSA private key. This is an algorithm-confusion authentication bypa…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-327</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44699">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7373 – Rapid7 Metasploit Pro is vulnerable to a local privilege escalation attack that ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7373</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7373</guid>
    <pubDate>Fri, 15 May 2026 03:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7373</strong></p>
  <p>Rapid7 Metasploit Pro is vulnerable to a local privilege escalation attack that allows a user to gain SYSTEM level control of a Windows host. When started the metasploitPostgreSQL service would start the postgres.exe child process which would in turn load an OpenSSL configuration file from a static location. This static location would be writable by a pre-existing "vagrant" user, if they already…</p>
  <p><strong>CVSS:</strong> 8.5 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7373">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-44662 – rust-openssl provides OpenSSL bindings for the Rust programming language. From 0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44662</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44662</guid>
    <pubDate>Thu, 14 May 2026 21:16:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-44662</strong></p>
  <p>rust-openssl provides OpenSSL bindings for the Rust programming language. From 0.10.0 to before 0.10.79, CipherCtxRef::cipher_update, CipherCtxRef::cipher_update_vec, and symm::Crypter::update incorrectly sized output buffers when used with AES key-wrap-with-padding ciphers (EVP_aes_{128,192,256}_wrap_pad). For a non-multiple-of-8 input, OpenSSL writes up to 7 bytes past the end of the caller's b…</p>
  <p><strong>CVSS:</strong> 5.1 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44662">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-42327 – rust-openssl provides OpenSSL bindings for the Rust programming language. From 0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42327</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42327</guid>
    <pubDate>Thu, 14 May 2026 21:16:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-42327</strong></p>
  <p>rust-openssl provides OpenSSL bindings for the Rust programming language. From 0.9.7 to before 0.10.79, X509Ref::ocsp_responders returns OCSP responder URLs from a certificate's AIA extension as OpensslString, whose Deref<Target = str> wraps the raw bytes with str::from_utf8_unchecked. OpenSSL does not enforce that the underlying IA5String is ASCII, so a certificate with non-UTF-8 bytes in its OC…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42327">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-44312 – css_parser is a Ruby CSS parser. Prior to 2.1.0 and 1.22.0, the CSS Parser gem d...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44312</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44312</guid>
    <pubDate>Thu, 14 May 2026 17:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-44312</strong></p>
  <p>css_parser is a Ruby CSS parser. Prior to 2.1.0 and 1.22.0, the CSS Parser gem does not validate HTTPS connections, allowing a Man-in-the-Middle (MITM) attacker to inject or modify CSS content when stylesheets are loaded via HTTPS. The connection is established with OpenSSL::SSL::VERIFY_NONE, meaning any HTTPS certificate—even entirely untrusted—will be accepted without validation. This vulnerabi…</p>
  <p><strong>CVSS:</strong> 5.8 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44312">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-62628 – Unsafe OpenSSL initialization within some AMD optional tools may allow a local u...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62628</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62628</guid>
    <pubDate>Thu, 14 May 2026 15:16:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-62628</strong></p>
  <p>Unsafe OpenSSL initialization within some AMD optional tools may allow a local user-privileged attacker to inject a malicious DLL, potentially resulting in arbitrary code execution.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62628">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-40004 – There exists an openssl.cnf privilege escalation vulnerability in ZTE Cloud PC c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40004</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40004</guid>
    <pubDate>Thu, 07 May 2026 04:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-40004</strong></p>
  <p>There exists an openssl.cnf privilege escalation vulnerability in ZTE Cloud PC client uSmartview. An attacker can execute arbitrary code locally and escalate privileges.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40004">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-37554 – An issue was discovered in Vanetza V2X v26.02 allowing remote unauthorized attac...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-37554</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-37554</guid>
    <pubDate>Fri, 01 May 2026 16:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-37554</strong></p>
  <p>An issue was discovered in Vanetza V2X v26.02 allowing remote unauthorized attackers to cause a denial of service. The vulnerability exists in the GeoNetworking packet processing pipeline where OpenSSL exceptions from ECC point validation (invalid compressed point, point not on curve) are not properly caught by the Router::indicate() call chain. The openssl_wrapper.cpp check() function (line 19)…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-248</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-37554">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-41898 – rust-openssl provides OpenSSL bindings for the Rust programming language.  From ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41898</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41898</guid>
    <pubDate>Fri, 24 Apr 2026 18:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-41898</strong></p>
  <p>rust-openssl provides OpenSSL bindings for the Rust programming language.  From 0.9.24 to before 0.10.78, the FFI trampolines behind SslContextBuilder::set_psk_client_callback, set_psk_server_callback, set_cookie_generate_cb, and set_stateless_cookie_generate_cb forwarded the user closure's returned usize directly to OpenSSL without checking it against the &mut [u8] that was handed to the closure…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-126</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41898">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-41681 – rust-openssl provides OpenSSL bindings for the Rust programming language.  From ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41681</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41681</guid>
    <pubDate>Fri, 24 Apr 2026 18:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-41681</strong></p>
  <p>rust-openssl provides OpenSSL bindings for the Rust programming language.  From 0.10.39 to before 0.10.78, EVP_DigestFinal() always writes EVP_MD_CTX_size(ctx) to the out buffer. If out is smaller than that, MdCtxRef::digest_final() writes past its end, usually corrupting the stack. This is reachable from safe Rust. This vulnerability is fixed in 0.10.78.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41681">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-41678 – rust-openssl provides OpenSSL bindings for the Rust programming language.  From ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41678</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41678</guid>
    <pubDate>Fri, 24 Apr 2026 18:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-41678</strong></p>
  <p>rust-openssl provides OpenSSL bindings for the Rust programming language.  From  to before 0.10.78, aes::unwrap_key() contains an incorrect assertion: it checks that out.len() + 8 <= in_.len(), but this condition is reversed. The intended invariant is out.len() >= in_.len() - 8, ensuring the output buffer is large enough. Because of the inverted check, the function only accepts buffers at or belo…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41678">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-41677 – rust-openssl provides OpenSSL bindings for the Rust programming language.  From ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41677</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41677</guid>
    <pubDate>Fri, 24 Apr 2026 18:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-41677</strong></p>
  <p>rust-openssl provides OpenSSL bindings for the Rust programming language.  From 0.9.0 to before 0.10.78, the *_from_pem_callback APIs did not validate the length returned by the user's callback. A password callback that returns a value larger than the buffer it was given can cause some versions of OpenSSL to over-read this buffer. OpenSSL 3.x is not affected by this. This vulnerability is fixed i…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41677">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-41676 – rust-openssl provides OpenSSL bindings for the Rust programming language.  From ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41676</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41676</guid>
    <pubDate>Fri, 24 Apr 2026 18:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-41676</strong></p>
  <p>rust-openssl provides OpenSSL bindings for the Rust programming language.  From 0.9.27 to before 0.10.78, Deriver::derive (and PkeyCtxRef::derive) sets len = buf.len() and passes it as the in/out length to EVP_PKEY_derive, relying on OpenSSL to honor it. On OpenSSL 1.1.x, X25519, X448, DH and HKDF-extract ignore the incoming *keylen, unconditionally writing the full shared secret (32/56/prime-siz…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-131</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41676">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-6482 – The Rapid7 Insight Agent (versions &gt; 4.1.0.2) is vulnerable to a local privilege...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6482</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6482</guid>
    <pubDate>Fri, 17 Apr 2026 06:16:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-6482</strong></p>
  <p>The Rapid7 Insight Agent (versions > 4.1.0.2) is vulnerable to a local privilege escalation attack that allows users to gain SYSTEM level control of a Windows host. Upon startup the agent service attempts to load an OpenSSL configuration file from a non-existent directory that is writable by standard users. By planting a crafted openssl.cnf file an attacker can trick the high-privilege service in…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-829</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6482">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4158 – KeePassXC OpenSSL Configuration Uncontrolled Search Path Element Local Privilege...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4158</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4158</guid>
    <pubDate>Sat, 11 Apr 2026 01:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4158</strong></p>
  <p>KeePassXC OpenSSL Configuration Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of KeePassXC. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.  The specific flaw exists within the configuration of…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4158">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5501 – wolfSSL_X509_verify_cert in the OpenSSL compatibility layer accepts a certificat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5501</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5501</guid>
    <pubDate>Fri, 10 Apr 2026 04:17:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5501</strong></p>
  <p>wolfSSL_X509_verify_cert in the OpenSSL compatibility layer accepts a certificate chain in which the leaf's signature is not checked, if the attacker supplies an untrusted intermediate with Basic Constraints `CA:FALSE` that is legitimately signed by a trusted root. An attacker who obtains any leaf certificate from a trusted CA (e.g. a free DV cert from Let's Encrypt) can forge a certificate for a…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5501">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31789 – Issue summary: Converting an excessively large OCTET STRING value to
a hexadecim...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31789</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31789</guid>
    <pubDate>Tue, 07 Apr 2026 22:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31789</strong></p>
  <p>Issue summary: Converting an excessively large OCTET STRING value to a hexadecimal string leads to a heap buffer overflow on 32 bit platforms.  Impact summary: A heap buffer overflow may lead to a crash or possibly an attacker controlled code execution or other undefined behavior.  If an attacker can supply a crafted X.509 certificate with an excessively large OCTET STRING value in extensions suc…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31789">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-28390 – Issue summary: During processing of a crafted CMS EnvelopedData message
with Key...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28390</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28390</guid>
    <pubDate>Tue, 07 Apr 2026 22:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-28390</strong></p>
  <p>Issue summary: During processing of a crafted CMS EnvelopedData message with KeyTransportRecipientInfo a NULL pointer dereference can happen.  Impact summary: Applications that process attacker-controlled CMS data may crash before authentication or cryptographic operations occur resulting in Denial of Service.  When a CMS EnvelopedData message that uses KeyTransportRecipientInfo with RSA-OAEP enc…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28390">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-28389 – Issue summary: During processing of a crafted CMS EnvelopedData message
with Key...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28389</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28389</guid>
    <pubDate>Tue, 07 Apr 2026 22:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-28389</strong></p>
  <p>Issue summary: During processing of a crafted CMS EnvelopedData message with KeyAgreeRecipientInfo a NULL pointer dereference can happen.  Impact summary: Applications that process attacker-controlled CMS data may crash before authentication or cryptographic operations occur resulting in Denial of Service.  When a CMS EnvelopedData message that uses KeyAgreeRecipientInfo is processed, the optiona…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28389">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-28388 – Issue summary: When a delta CRL that contains a Delta CRL Indicator extension
is...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28388</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28388</guid>
    <pubDate>Tue, 07 Apr 2026 22:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-28388</strong></p>
  <p>Issue summary: When a delta CRL that contains a Delta CRL Indicator extension is processed a NULL pointer dereference might happen if the required CRL Number extension is missing.  Impact summary: A NULL pointer dereference can trigger a crash which leads to a Denial of Service for an application.  When CRL processing and delta CRL processing is enabled during X.509 certificate verification, the…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28388">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-28386 – Issue summary: Applications using AES-CFB128 encryption or decryption on
systems...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28386</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28386</guid>
    <pubDate>Tue, 07 Apr 2026 22:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-28386</strong></p>
  <p>Issue summary: Applications using AES-CFB128 encryption or decryption on systems with AVX-512 and VAES support can trigger an out-of-bounds read of up to 15 bytes when processing partial cipher blocks.  Impact summary: This out-of-bounds read may trigger a crash which leads to Denial of Service for an application if the input buffer ends at a memory page boundary and the following page is unmappe…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28386">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34054 – vcpkg is a free and open-source C/C++ package manager. Prior to version 3.6.1#3,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34054</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34054</guid>
    <pubDate>Tue, 31 Mar 2026 03:15:58 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34054</strong></p>
  <p>vcpkg is a free and open-source C/C++ package manager. Prior to version 3.6.1#3, vcpkg's Windows builds of OpenSSL set openssldir to a path on the build machine, making that path be attackable later on customer machines. This issue has been patched in version 3.6.1#3.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34054">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33895 – Forge (also called `node-forge`) is a native implementation of Transport Layer S...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33895</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33895</guid>
    <pubDate>Fri, 27 Mar 2026 21:17:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33895</strong></p>
  <p>Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, Ed25519 signature verification accepts forged non-canonical signatures where the scalar S is not reduced modulo the group order (`S >= L`). A valid signature and its `S + L` variant both verify in forge, while Node.js `crypto.verify` (OpenSSL-backed) rejects the `S + L` v…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-347</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33895">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27459 – pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27459</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27459</guid>
    <pubDate>Wed, 18 Mar 2026 00:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27459</strong></p>
  <p>pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to `set_cookie_generate_callback` returned a cookie value greater than 256 bytes, pyOpenSSL would overflow an OpenSSL provided buffer. Starting in version 26.0.0, cookie values that are too long are now rejected.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27459">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-27448 – pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27448</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27448</guid>
    <pubDate>Wed, 18 Mar 2026 00:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-27448</strong></p>
  <p>pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 0.14.0 and prior to version 26.0.0, if a user provided callback to `set_tlsext_servername_callback` raised an unhandled exception, this would result in a connection being accepted. If a user was relying on this callback for any security-sensitive behavior, this could allow bypassing it. Starting in version 26.0.0, unhan…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-636</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27448">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-2673 – Issue summary: An OpenSSL TLS 1.3 server may fail to negotiate the expected
pref...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-2673</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-2673</guid>
    <pubDate>Fri, 13 Mar 2026 19:54:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-2673</strong></p>
  <p>Issue summary: An OpenSSL TLS 1.3 server may fail to negotiate the expected preferred key exchange group when its key exchange group configuration includes the default by using the 'DEFAULT' keyword.  Impact summary: A less preferred key exchange may be used even when a more preferred group is supported by both client and server, if the group was not included among the client's initial predicated…</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-757</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-2673">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24695 – An OS command injection 




vulnerability exists in XWEB Pro version 1.12.1 and...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24695</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24695</guid>
    <pubDate>Fri, 27 Feb 2026 01:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24695</strong></p>
  <p>An OS command injection      vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an  authenticated attacker to achieve remote code execution on the system by  injecting malicious input into OpenSSL argument fields within requests  sent to the utility route, leading to remote code execution.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24695">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-23229 – In the Linux kernel, the following vulnerability has been resolved:

crypto: vir...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23229</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23229</guid>
    <pubDate>Wed, 18 Feb 2026 16:22:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-23229</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  crypto: virtio - Add spinlock protection with virtqueue notification  When VM boots with one virtio-crypto PCI device and builtin backend, run openssl benchmark command with multiple processes, such as   openssl speed -evp aes-128-cbc -engine afalg  -seconds 10 -multi 32  openssl processes will hangup and there is error reported…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23229">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-1357 – The Migration, Backup, Staging – WPvivid Backup &amp; Migration plugin for WordPress...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-1357</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-1357</guid>
    <pubDate>Wed, 11 Feb 2026 06:15:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-1357</strong></p>
  <p>The Migration, Backup, Staging – WPvivid Backup & Migration plugin for WordPress is vulnerable to Unauthenticated Arbitrary File Upload in versions up to and including 0.9.123. This is due to improper error handling in the RSA decryption process combined with a lack of path sanitization when writing uploaded files. When the plugin fails to decrypt a session key using openssl_private_decrypt(), it…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1357">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25892 – Adminer is open-source database management software. Adminer v5.4.1 and earlier ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25892</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25892</guid>
    <pubDate>Mon, 09 Feb 2026 22:16:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25892</strong></p>
  <p>Adminer is open-source database management software. Adminer v5.4.1 and earlier has a version check mechanism where adminer.org sends signed version info via JavaScript postMessage, which the browser then POSTs to ?script=version. This endpoint lacks origin validation and accepts POST data from any source. An attacker can POST version[] parameter which PHP converts to an array. On next page load,…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25892">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-22796 – Issue summary: A type confusion vulnerability exists in the signature
verificati...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-22796</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-22796</guid>
    <pubDate>Tue, 27 Jan 2026 16:16:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-22796</strong></p>
  <p>Issue summary: A type confusion vulnerability exists in the signature verification of signed PKCS#7 data where an ASN1_TYPE union member is accessed without first validating the type, causing an invalid or NULL pointer dereference when processing malformed PKCS#7 data.  Impact summary: An application performing signature verification of PKCS#7 data or calling directly the PKCS7_digest_from_attrib…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-754</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-22796">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-22795 – Issue summary: An invalid or NULL pointer dereference can happen in
an applicati...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-22795</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-22795</guid>
    <pubDate>Tue, 27 Jan 2026 16:16:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-22795</strong></p>
  <p>Issue summary: An invalid or NULL pointer dereference can happen in an application processing a malformed PKCS#12 file.  Impact summary: An application processing a malformed PKCS#12 file can be caused to dereference an invalid or NULL pointer on memory read, resulting in a Denial of Service.  A type confusion vulnerability exists in PKCS#12 parsing code where an ASN1_TYPE union member is accesse…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-754</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-22795">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-69421 – Issue summary: Processing a malformed PKCS#12 file can trigger a NULL pointer
de...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-69421</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-69421</guid>
    <pubDate>Tue, 27 Jan 2026 16:16:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-69421</strong></p>
  <p>Issue summary: Processing a malformed PKCS#12 file can trigger a NULL pointer dereference in the PKCS12_item_decrypt_d2i_ex() function.  Impact summary: A NULL pointer dereference can trigger a crash which leads to Denial of Service for an application processing PKCS#12 files.  The PKCS12_item_decrypt_d2i_ex() function does not check whether the oct parameter is NULL before dereferencing it. When…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-69421">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-69420 – Issue summary: A type confusion vulnerability exists in the TimeStamp Response
v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-69420</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-69420</guid>
    <pubDate>Tue, 27 Jan 2026 16:16:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-69420</strong></p>
  <p>Issue summary: A type confusion vulnerability exists in the TimeStamp Response verification code where an ASN1_TYPE union member is accessed without first validating the type, causing an invalid or NULL pointer dereference when processing a malformed TimeStamp Response file.  Impact summary: An application calling TS_RESP_verify_response() with a malformed TimeStamp Response can be caused to dere…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-754</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-69420">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-69419 – Issue summary: Calling PKCS12_get_friendlyname() function on a maliciously
craft...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-69419</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-69419</guid>
    <pubDate>Tue, 27 Jan 2026 16:16:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-69419</strong></p>
  <p>Issue summary: Calling PKCS12_get_friendlyname() function on a maliciously crafted PKCS#12 file with a BMPString (UTF-16BE) friendly name containing non-ASCII BMP code point can trigger a one byte write before the allocated buffer.  Impact summary: The out-of-bounds write can cause a memory corruption which can have various consequences including a Denial of Service.  The OPENSSL_uni2utf8() funct…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-69419">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-69418 – Issue summary: When using the low-level OCB API directly with AES-NI or&lt;br&gt;other...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-69418</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-69418</guid>
    <pubDate>Tue, 27 Jan 2026 16:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-69418</strong></p>
  <p>Issue summary: When using the low-level OCB API directly with AES-NI or<br>other hardware-accelerated code paths, inputs whose length is not a multiple<br>of 16 bytes can leave the final partial block unencrypted and unauthenticated.<br><br>Impact summary: The trailing 1-15 bytes of a message may be exposed in<br>cleartext on encryption and are not covered by the authentication tag,<br>allowing a…</p>
  <p><strong>CVSS:</strong> 4.0 · <strong>CWE:</strong> CWE-325</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-69418">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-68160 – Issue summary: Writing large, newline-free data into a BIO chain using the
line-...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-68160</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-68160</guid>
    <pubDate>Tue, 27 Jan 2026 16:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-68160</strong></p>
  <p>Issue summary: Writing large, newline-free data into a BIO chain using the line-buffering filter where the next BIO performs short writes can trigger a heap-based out-of-bounds write.  Impact summary: This out-of-bounds write can cause memory corruption which typically results in a crash, leading to Denial of Service for an application.  The line-buffering BIO filter (BIO_f_linebuffer) is not use…</p>
  <p><strong>CVSS:</strong> 4.7 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-68160">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-66199 – Issue summary: A TLS 1.3 connection using certificate compression can be
forced ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66199</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66199</guid>
    <pubDate>Tue, 27 Jan 2026 16:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-66199</strong></p>
  <p>Issue summary: A TLS 1.3 connection using certificate compression can be forced to allocate a large buffer before decompression without checking against the configured certificate size limit.  Impact summary: An attacker can cause per-connection memory allocations of up to approximately 22 MiB and extra CPU work, potentially leading to service degradation or resource exhaustion (Denial of Service…</p>
  <p><strong>CVSS:</strong> 5.9 · <strong>CWE:</strong> CWE-789</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66199">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-15469 – Issue summary: The 'openssl dgst' command-line tool silently truncates input
dat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-15469</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-15469</guid>
    <pubDate>Tue, 27 Jan 2026 16:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-15469</strong></p>
  <p>Issue summary: The 'openssl dgst' command-line tool silently truncates input data to 16MB when using one-shot signing algorithms and reports success instead of an error.  Impact summary: A user signing or verifying files larger than 16MB with one-shot algorithms (such as Ed25519, Ed448, or ML-DSA) may believe the entire file is authenticated while trailing data beyond 16MB remains unauthenticated…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-347</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-15469">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-15468 – Issue summary: If an application using the SSL_CIPHER_find() function in
a QUIC ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-15468</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-15468</guid>
    <pubDate>Tue, 27 Jan 2026 16:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-15468</strong></p>
  <p>Issue summary: If an application using the SSL_CIPHER_find() function in a QUIC protocol client or server receives an unknown cipher suite from the peer, a NULL dereference occurs.  Impact summary: A NULL pointer dereference leads to abnormal termination of the running process causing Denial of Service.  Some applications call SSL_CIPHER_find() from the client_hello_cb callback on the cipher ID r…</p>
  <p><strong>CVSS:</strong> 5.9 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-15468">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-15467 – Issue summary: Parsing CMS AuthEnvelopedData or EnvelopedData message with
malic...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-15467</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-15467</guid>
    <pubDate>Tue, 27 Jan 2026 16:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-15467</strong></p>
  <p>Issue summary: Parsing CMS AuthEnvelopedData or EnvelopedData message with maliciously crafted AEAD parameters can trigger a stack buffer overflow.  Impact summary: A stack buffer overflow may lead to a crash, causing Denial of Service, or potentially remote code execution.  When parsing CMS (Auth)EnvelopedData structures that use AEAD ciphers such as AES-GCM, the IV (Initialization Vector) encod…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-15467">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-11187 – Issue summary: PBMAC1 parameters in PKCS#12 files are missing validation
which c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-11187</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-11187</guid>
    <pubDate>Tue, 27 Jan 2026 16:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-11187</strong></p>
  <p>Issue summary: PBMAC1 parameters in PKCS#12 files are missing validation which can trigger a stack-based buffer overflow, invalid pointer or NULL pointer dereference during MAC verification.  Impact summary: The stack buffer overflow or NULL pointer dereference may cause a crash leading to Denial of Service for an application that parses untrusted PKCS#12 files. The buffer overflow may also poten…</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-11187">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59464 – A memory leak in Node.js’s OpenSSL integration occurs when converting `X.509` ce...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59464</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59464</guid>
    <pubDate>Tue, 20 Jan 2026 21:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59464</strong></p>
  <p>A memory leak in Node.js’s OpenSSL integration occurs when converting `X.509` certificate fields to UTF-8 without freeing the allocated buffer. When applications call `socket.getPeerCertificate(true)`, each certificate field leaks memory, allowing remote clients to trigger steady memory growth through repeated TLS connections. Over time this can lead to resource exhaustion and denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59464">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-21444 – libtpms, a library that provides software emulation of a Trusted Platform Module...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-21444</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-21444</guid>
    <pubDate>Fri, 02 Jan 2026 19:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-21444</strong></p>
  <p>libtpms, a library that provides software emulation of a Trusted Platform Module, has a flaw in versions 0.10.0 and 0.10.1. The commonly used integration of libtpms with OpenSSL 3.x contained a vulnerability related to the returned IV (initialization vector) when certain symmetric ciphers were used. Instead of returning the last IV it returned the initial IV to the caller, thus weakening the subs…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-327</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21444">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-69217 – coturn is a free open source implementation of TURN and STUN Server. Versions 4...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-69217</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-69217</guid>
    <pubDate>Tue, 30 Dec 2025 01:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-69217</strong></p>
  <p>coturn is a free open source implementation of TURN and STUN Server. Versions 4.6.2r5 through 4.7.0-r4 have a bad random number generator for nonces and port randomization after refactoring. Additionally, random numbers aren't generated with openssl's RAND_bytes but libc's random() (if it's not running on Windows). When fetching about 50 sequential nonces (i.e., through sending 50 unauthenticated…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-338</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-69217">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-14406 – Soda PDF Desktop Uncontrolled Search Path Element Local Privilege Escalation Vul...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-14406</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-14406</guid>
    <pubDate>Tue, 23 Dec 2025 22:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-14406</strong></p>
  <p>Soda PDF Desktop Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Soda PDF Desktop. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.  The specific flaw exists within the configuration of OpenSSL…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-14406">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-14405 – PDFsam Enhanced Uncontrolled Search Path Element Local Privilege Escalation Vuln...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-14405</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-14405</guid>
    <pubDate>Tue, 23 Dec 2025 22:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-14405</strong></p>
  <p>PDFsam Enhanced Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows phyiscally-present attackers to escalate privileges on affected installations of PDFsam Enhanced. An attacker must first obtain the ability to mount a malicious drive onto the target system in order to exploit this vulnerability.  The specific flaw exists within the configuration o…</p>
  <p><strong>CVSS:</strong> 6.8 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-14405">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-67900 – NXLog Agent before 6.11 can load a file specified by the OPENSSL_CONF environmen...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-67900</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-67900</guid>
    <pubDate>Sun, 14 Dec 2025 23:15:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-67900</strong></p>
  <p>NXLog Agent before 6.11 can load a file specified by the OPENSSL_CONF environment variable.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-829</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-67900">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53841 – The GC-AGENTS-SERVICE running as part of Akamai´s Guardicore Platform Agent for ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53841</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53841</guid>
    <pubDate>Wed, 03 Dec 2025 15:15:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53841</strong></p>
  <p>The GC-AGENTS-SERVICE running as part of Akamai´s Guardicore Platform Agent for Windows versions prior to v49.20.1, v50.15.0, v51.12.0, v52.2.0 is affected by a local privilege escalation vulnerability. The service will attempt to read an OpenSSL configuration file from a non-existent location that standard Windows users have default write access to. This allows an unprivileged local user to crea…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-829</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53841">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-65500 – NULL pointer dereference in coap_dtls_generate_cookie() in src/coap_openssl.c in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65500</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65500</guid>
    <pubDate>Mon, 24 Nov 2025 14:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-65500</strong></p>
  <p>NULL pointer dereference in coap_dtls_generate_cookie() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted DTLS handshake that triggers SSL_get_SSL_CTX() to return NULL.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65500">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-65499 – Array index error in tls_verify_call_back() in src/coap_openssl.c in OISM libcoa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65499</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65499</guid>
    <pubDate>Mon, 24 Nov 2025 14:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-65499</strong></p>
  <p>Array index error in tls_verify_call_back() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted DTLS handshake that triggers SSL_get_ex_data_X509_STORE_CTX_idx() to return -1.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-129</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65499">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-65498 – NULL pointer dereference in coap_dtls_generate_cookie() in src/coap_openssl.c in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65498</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65498</guid>
    <pubDate>Mon, 24 Nov 2025 14:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-65498</strong></p>
  <p>NULL pointer dereference in coap_dtls_generate_cookie() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted DTLS handshake that triggers SSL_get_SSL_CTX() to return NULL.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65498">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-65497 – NULL pointer dereference in coap_dtls_generate_cookie() in src/coap_openssl.c in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65497</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65497</guid>
    <pubDate>Mon, 24 Nov 2025 14:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-65497</strong></p>
  <p>NULL pointer dereference in coap_dtls_generate_cookie() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted DTLS handshake that triggers SSL_get_SSL_CTX() to return NULL.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65497">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-65496 – NULL pointer dereference in coap_dtls_generate_cookie() in src/coap_openssl.c in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65496</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65496</guid>
    <pubDate>Mon, 24 Nov 2025 14:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-65496</strong></p>
  <p>NULL pointer dereference in coap_dtls_generate_cookie() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted DTLS handshake that triggers SSL_get_SSL_CTX() to return NULL.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65496">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-65495 – Integer signedness error in tls_verify_call_back() in src/coap_openssl.c in OISM...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65495</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65495</guid>
    <pubDate>Mon, 24 Nov 2025 14:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-65495</strong></p>
  <p>Integer signedness error in tls_verify_call_back() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted TLS certificate that causes i2d_X509() to return -1 and be misused as a malloc() size parameter.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-195</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65495">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-65494 – NULL pointer dereference in get_san_or_cn_from_cert() in src/coap_openssl.c in O...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65494</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65494</guid>
    <pubDate>Mon, 24 Nov 2025 14:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-65494</strong></p>
  <p>NULL pointer dereference in get_san_or_cn_from_cert() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted X.509 certificate that causes sk_GENERAL_NAME_value() to return NULL.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65494">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-65493 – NULL pointer dereference in src/coap_openssl.c in OISM libcoap 4.3.5 allows remo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65493</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65493</guid>
    <pubDate>Mon, 24 Nov 2025 14:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-65493</strong></p>
  <p>NULL pointer dereference in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted DTLS/TLS connection that triggers BIO_get_data() to return NULL.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65493">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-64429 – DuckDB is a SQL database management system. DuckDB implemented block-based encry...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-64429</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-64429</guid>
    <pubDate>Wed, 12 Nov 2025 22:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-64429</strong></p>
  <p>DuckDB is a SQL database management system. DuckDB implemented block-based encryption of DB on the filesystem starting with DuckDB 1.4.0. There are a few issues related to this implementation. The DuckDB can fall back to an insecure random number generator (pcg32) to generate cryptographic keys or IVs. When clearing keys from memory, the compiler may remove the memset() and leave sensitive data o…</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-327</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-64429">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-41721 – A high privileged remote attacker can influence the parameters passed to the ope...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-41721</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-41721</guid>
    <pubDate>Wed, 22 Oct 2025 07:15:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-41721</strong></p>
  <p>A high privileged remote attacker can influence the parameters passed to the openssl command due to improper neutralization of special elements when adding a password protected self-signed certificate.</p>
  <p><strong>CVSS:</strong> 2.7 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-41721">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-62375 – go-witness and witness are Go modules for generating attestations. In go-witness...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62375</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62375</guid>
    <pubDate>Wed, 15 Oct 2025 20:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-62375</strong></p>
  <p>go-witness and witness are Go modules for generating attestations. In go-witness versions 0.8.6 and earlier and witness versions 0.9.2 and earlier the AWS attestor improperly verifies AWS EC2 instance identity documents. Verification can incorrectly succeed when a signature is not present or is empty, and when RSA signature verification fails. The attestor also embeds a single legacy global AWS p…</p>
  <p><strong>CVSS:</strong> 6.9 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62375">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-27237 – In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-27237</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-27237</guid>
    <pubDate>Fri, 03 Oct 2025 12:15:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-27237</strong></p>
  <p>In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation by injecting a DLL.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-27237">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-9232 – Issue summary: An application using the OpenSSL HTTP client API functions may
tr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-9232</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-9232</guid>
    <pubDate>Tue, 30 Sep 2025 14:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-9232</strong></p>
  <p>Issue summary: An application using the OpenSSL HTTP client API functions may trigger an out-of-bounds read if the 'no_proxy' environment variable is set and the host portion of the authority component of the HTTP URL is an IPv6 address.  Impact summary: An out-of-bounds read can trigger a crash which leads to Denial of Service for an application.  The OpenSSL HTTP client API functions can be use…</p>
  <p><strong>CVSS:</strong> 5.9 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-9232">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-9231 – Issue summary: A timing side-channel which could potentially allow remote
recove...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-9231</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-9231</guid>
    <pubDate>Tue, 30 Sep 2025 14:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-9231</strong></p>
  <p>Issue summary: A timing side-channel which could potentially allow remote recovery of the private key exists in the SM2 algorithm implementation on 64 bit ARM platforms.  Impact summary: A timing side-channel in SM2 signature computations on 64 bit ARM platforms could allow recovering the private key by an attacker..  While remote key recovery over a network was not attempted by the reporter, tim…</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-385</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-9231">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-9230 – Issue summary: An application trying to decrypt CMS messages encrypted using
pas...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-9230</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-9230</guid>
    <pubDate>Tue, 30 Sep 2025 14:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-9230</strong></p>
  <p>Issue summary: An application trying to decrypt CMS messages encrypted using password based encryption can trigger an out-of-bounds read and write.  Impact summary: This out-of-bounds read may trigger a crash which leads to Denial of Service for an application. The out-of-bounds write can cause a memory corruption which can have various consequences including a Denial of Service or Execution of a…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-9230">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-60019 – glib-networking's OpenSSL backend fails to properly check the return value of me...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-60019</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-60019</guid>
    <pubDate>Thu, 25 Sep 2025 16:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-60019</strong></p>
  <p>glib-networking's OpenSSL backend fails to properly check the return value of memory allocation routines. An out of memory condition could potentially result in writing to an invalid memory location.</p>
  <p><strong>CVSS:</strong> 3.7 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-60019">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-60018 – glib-networking's OpenSSL backend fails to properly check the return value of a ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-60018</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-60018</guid>
    <pubDate>Thu, 25 Sep 2025 16:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-60018</strong></p>
  <p>glib-networking's OpenSSL backend fails to properly check the return value of a call to BIO_write(), resulting in an out of bounds read.</p>
  <p><strong>CVSS:</strong> 4.8 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-60018">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-34203 – Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-34203</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-34203</guid>
    <pubDate>Fri, 19 Sep 2025 19:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-34203</strong></p>
  <p>Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.1002 and Application versions prior to 20.0.2614 (VA and SaaS deployments) contain multiple Docker containers that include outdated, end-of-life, unsupported, or otherwise vulnerable third-party components (examples: Nginx 1.17.x, OpenSSL 1.1.1d, various EOL Alpine/Debian/Ubuntu base images, and EOL Laravel/PHP lib…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-34203">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-34192 – Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-34192</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-34192</guid>
    <pubDate>Fri, 19 Sep 2025 19:15:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-34192</strong></p>
  <p>Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.893 and Application versions prior to 20.0.2140 (macOS/Linux client deployments) are built against OpenSSL 1.0.2h-fips (released May 2016), which has been end-of-life since 2019 and is no longer supported by the OpenSSL project. Continued use of this outdated cryptographic library exposes deployments to known vulne…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-1104</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-34192">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-55118 – Memory corruptions can be remotely triggered in the Control-M/Agent when SSL/TLS...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-55118</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-55118</guid>
    <pubDate>Tue, 16 Sep 2025 13:16:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-55118</strong></p>
  <p>Memory corruptions can be remotely triggered in the Control-M/Agent when SSL/TLS communication is configured.   The issue occurs in the following cases:    *  Control-M/Agent 9.0.20: SSL/TLS configuration is set to the non-default setting "use_openssl=n";   *  Control-M/Agent 9.0.21 and 9.0.22: Agent router configuration uses the non-default settings "JAVA_AR=N" and "use_openssl=n"</p>
  <p><strong>CVSS:</strong> 8.9 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-55118">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-55117 – A stack-based buffer overflow can be remotely triggered when formatting an error...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-55117</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-55117</guid>
    <pubDate>Tue, 16 Sep 2025 13:16:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-55117</strong></p>
  <p>A stack-based buffer overflow can be remotely triggered when formatting an error message in the Control-M/Agent when SSL/TLS communication is configured.   The issue occurs in the following cases:    *  Control-M/Agent 9.0.20: SSL/TLS configuration is set to the non-default setting "use_openssl=n";   *  Control-M/Agent 9.0.21 and 9.0.22: Agent router configuration uses the non-default settings "J…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-55117">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-10225 – Improper Restriction of Operations within the Bounds of a Memory Buffer (CWE-119...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-10225</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-10225</guid>
    <pubDate>Wed, 10 Sep 2025 13:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-10225</strong></p>
  <p>Improper Restriction of Operations within the Bounds of a Memory Buffer (CWE-119) in the OpenSSL-based session module in AxxonSoft Axxon One (C-Werk) 2.0.6 and earlier on Windows allows a remote attacker under high load conditions to cause application crashes or unpredictable behavior via triggering memory reallocation errors when handling expired session keys.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-10225">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-42927 – SAP NetWeaver AS Java application uses Adobe Document Service, installed with a ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-42927</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-42927</guid>
    <pubDate>Tue, 09 Sep 2025 02:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-42927</strong></p>
  <p>SAP NetWeaver AS Java application uses Adobe Document Service, installed with a vulnerable version of OpenSSL.Successful exploitation of known vulnerabilities in the outdated OpenSSL library would allow user with high system privileges to access and modify system information.This vulnerability has a low impact on confidentiality and integrity, with no impact on availability.</p>
  <p><strong>CVSS:</strong> 3.4 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-42927">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-8614 – NoMachine Uncontrolled Search Path Element Local Privilege Escalation Vulnerabil...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-8614</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-8614</guid>
    <pubDate>Tue, 02 Sep 2025 20:15:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-8614</strong></p>
  <p>NoMachine Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of NoMachine.  An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.  The specific flaw exists within the configuration of OpenSSL. The product…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-8614">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-45765 – ruby-jwt v3.0.0.beta1 was discovered to contain weak encryption. NOTE: the Suppl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-45765</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-45765</guid>
    <pubDate>Thu, 07 Aug 2025 21:15:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-45765</strong></p>
  <p>ruby-jwt v3.0.0.beta1 was discovered to contain weak encryption. NOTE: the Supplier's perspective is "keysize is not something that is enforced by this library. Currently more recent versions of OpenSSL are enforcing some key sizes and those restrictions apply to the users of this gem also."</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-326</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-45765">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-53159 – The openssl crate before 0.10.55 for Rust allows an out-of-bounds read via an em...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-53159</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-53159</guid>
    <pubDate>Mon, 28 Jul 2025 03:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-53159</strong></p>
  <p>The openssl crate before 0.10.55 for Rust allows an out-of-bounds read via an empty string to X509VerifyParamRef::set_host.</p>
  <p><strong>CVSS:</strong> 4.5 · <strong>CWE:</strong> CWE-126</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-53159">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-8069 – During the AWS Client VPN client installation on Windows devices, the install pr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-8069</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-8069</guid>
    <pubDate>Wed, 23 Jul 2025 16:15:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-8069</strong></p>
  <p>During the AWS Client VPN client installation on Windows devices, the install process references the C:\usr\local\windows-x86_64-openssl-localbuild\ssl directory location to fetch the OpenSSL configuration file. As a result, a non-admin user could place arbitrary code in the configuration file. If an admin user starts the AWS Client VPN client installation process, that code could be executed wit…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-8069">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-0664 – A locally authenticated, privileged user can craft a malicious OpenSSL configura...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-0664</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-0664</guid>
    <pubDate>Mon, 21 Jul 2025 07:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-0664</strong></p>
  <p>A locally authenticated, privileged user can craft a malicious OpenSSL configuration file, potentially leading the agent to load an arbitrary local library. This may impair endpoint defenses and allow the attacker to achieve code execution with SYSTEM-level privileges.</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-0664">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-7394 – In the OpenSSL compatibility layer implementation, the function RAND_poll() was ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-7394</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-7394</guid>
    <pubDate>Fri, 18 Jul 2025 23:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-7394</strong></p>
  <p>In the OpenSSL compatibility layer implementation, the function RAND_poll() was not behaving as expected and leading to the potential for predictable values returned from RAND_bytes() after fork() is called. This can lead to weak or predictable random numbers generated in applications that are both using RAND_bytes() and doing fork() operations. This only affects applications explicitly calling R…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-7394">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-4662 – Brocade SANnav before SANnav 2.4.0a logs plaintext passphrases in the Brocade SA...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-4662</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-4662</guid>
    <pubDate>Thu, 10 Jul 2025 21:15:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-4662</strong></p>
  <p>Brocade SANnav before SANnav 2.4.0a logs plaintext passphrases in the Brocade SANnav host server audit logs while executing OpenSSL command using a passphrase from the command line or while providing the passphrase through a temporary file.  These audit logs are the local server VM’s audit logs and are not controlled by SANnav. These logs are only visible to the server admin of the host server an…</p>
  <p><strong>CVSS:</strong> 4.4 · <strong>CWE:</strong> CWE-497</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-4662">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-5987 – A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL libra...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-5987</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-5987</guid>
    <pubDate>Mon, 07 Jul 2025 15:15:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-5987</strong></p>
  <p>A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returned aliases with the SSH_OK code, resulting in libssh not properly detecting the error returned by the OpenSSL library. T…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-393</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-5987">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-5372 – A flaw was found in libssh versions built with OpenSSL versions older than 3.0, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-5372</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-5372</guid>
    <pubDate>Fri, 04 Jul 2025 06:15:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-5372</strong></p>
  <p>A flaw was found in libssh versions built with OpenSSL versions older than 3.0, specifically in the ssh_kdf() function responsible for key derivation. Due to inconsistent interpretation of return values where OpenSSL uses 0 to indicate failure and libssh uses 0 for success—the function may mistakenly return a success status even when key derivation fails. This results in uninitialized cryptograph…</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-682</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-5372">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-27587 – OpenSSL 3.0.0 through 3.3.2 on the PowerPC architecture is vulnerable to a Miner...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-27587</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-27587</guid>
    <pubDate>Mon, 16 Jun 2025 22:15:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-27587</strong></p>
  <p>OpenSSL 3.0.0 through 3.3.2 on the PowerPC architecture is vulnerable to a Minerva attack, exploitable by measuring the time of signing of random messages using the EVP_DigestSign API, and then using the private key to extract the K value (nonce) from the signatures. Next, based on the bit size of the extracted nonce, one can compare the signing time of full-sized nonces to signatures that used s…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-385</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-27587">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-5480 – Action1 Uncontrolled Search Path Element Local Privilege Escalation Vulnerabilit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-5480</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-5480</guid>
    <pubDate>Fri, 06 Jun 2025 19:15:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-5480</strong></p>
  <p>Action1 Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Action1.  An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.  The specific flaw exists within the configuration of OpenSSL. The product loa…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-5480">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-48057 – Icinga 2 is a monitoring system which checks the availability of network resourc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-48057</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-48057</guid>
    <pubDate>Tue, 27 May 2025 17:15:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-48057</strong></p>
  <p>Icinga 2 is a monitoring system which checks the availability of network resources, notifies users of outages, and generates performance data for reporting. Prior to versions 2.12.12, 2.13.12, and 2.14.6, the VerifyCertificate() function can be tricked into incorrectly treating certificates as valid. This allows an attacker to send a malicious certificate request that is then treated as a renewal…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-296</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48057">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-4575 – Issue summary: Use of -addreject option with the openssl x509 application adds
a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-4575</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-4575</guid>
    <pubDate>Thu, 22 May 2025 14:16:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-4575</strong></p>
  <p>Issue summary: Use of -addreject option with the openssl x509 application adds a trusted use instead of a rejected use for a certificate.  Impact summary: If a user intends to make a trusted certificate rejected for a particular use it will be instead marked as trusted for that use.  A copy & paste error during minor refactoring of the code introduced this issue in the OpenSSL 3.5 version. If, fo…</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-4575">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-47276 – Actualizer is a single shell script solution to allow developers and embedded en...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-47276</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-47276</guid>
    <pubDate>Tue, 13 May 2025 16:15:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-47276</strong></p>
  <p>Actualizer is a single shell script solution to allow developers and embedded engineers to create Debian operating systems (OS). Prior to version 1.2.0, Actualizer uses OpenSSL's  "-passwd" function, which uses SHA512 instead of a more suitable password hasher like Yescript/Argon2i. All Actualizer users building a full Debian Operating System are affected. Users should upgrade to version 1.2.0 of…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-328</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47276">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-35471 – conda-forge openssl-feedstock before 066e83c (2024-05-20), on Microsoft Windows,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-35471</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-35471</guid>
    <pubDate>Tue, 13 May 2025 02:15:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-35471</strong></p>
  <p>conda-forge openssl-feedstock before 066e83c (2024-05-20), on Microsoft Windows, configures OpenSSL to use an OPENSSLDIR file path that can be written to by non-privilged local users. By writing a specially crafted openssl.cnf file in OPENSSLDIR, a non-privileged local user can execute arbitrary code with the privileges of the user or process loading openssl-feedstock DLLs. Miniforge before 24.5.…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-35471">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-46551 – JRuby-OpenSSL is an add-on gem for JRuby that emulates the Ruby OpenSSL native l...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-46551</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-46551</guid>
    <pubDate>Wed, 07 May 2025 17:15:58 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-46551</strong></p>
  <p>JRuby-OpenSSL is an add-on gem for JRuby that emulates the Ruby OpenSSL native library. Starting in JRuby-OpenSSL version 0.12.1 and prior to version 0.15.4 (corresponding to JRuby versions starting in 9.3.4.0 prior to 9.4.12.1 and 10.0.0.0 prior to 10.0.0.1), when verifying SSL certificates, JRuby-OpenSSL does not verify that the hostname presented in the certificate matches the one the user tri…</p>
  <p><strong>CVSS:</strong> 3.7 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-46551">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-2769 – Bdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation Vuln...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-2769</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-2769</guid>
    <pubDate>Wed, 23 Apr 2025 17:16:54 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-2769</strong></p>
  <p>Bdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Bdrive NetDrive. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.  The specific flaw exists within the configuration of OpenSSL.…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-2769">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-2768 – Bdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation Vuln...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-2768</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-2768</guid>
    <pubDate>Wed, 23 Apr 2025 17:16:54 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-2768</strong></p>
  <p>Bdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Bdrive NetDrive. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.  The specific flaw exists within the configuration of OpenSSL.…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-2768">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-23253 – NVIDIA NvContainer service for Windows contains a vulnerability in its usage of ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23253</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23253</guid>
    <pubDate>Tue, 22 Apr 2025 19:15:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-23253</strong></p>
  <p>NVIDIA NvContainer service for Windows contains a vulnerability in its usage of OpenSSL, where an attacker could exploit a hard-coded constant issue by copying a malicious DLL in a hard-coded path. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.</p>
  <p><strong>CVSS:</strong> 2.5 · <strong>CWE:</strong> CWE-547</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23253">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
