|
11
|
5.3 |
MEDIUM
Network
|
openssl
|
openssl
|
Issue Summary: An error in the callback used to verify the certificate
provided in a Root CA key update Certificate Management Protocol (CMP)
message response rendered the certificate validation inef…
Update
|
CWE-295
Improper Certificate Validation
|
CVE-2026-42769
|
2026-06-16 03:26 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
12
|
7.5 |
HIGH
Network
|
openssl
|
openssl
|
Issue summary: Receiving a QUIC initial packet with an invalid token may
trigger a NULL pointer dereference in the OpenSSL QUIC server with
address validation disabled.
Impact summary: NULL pointer …
Update
|
CWE-476
NULL Pointer Dereference
|
CVE-2026-42764
|
2026-06-16 03:25 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
13
|
5.9 |
MEDIUM
Network
|
openssl
|
openssl
|
Issue summary: A specially crafted password-encrypted CMS message
can trigger a NULL pointer dereference during CMS decryption.
Impact summary: This NULL pointer dereference leads to an application …
Update
|
CWE-476
NULL Pointer Dereference
|
CVE-2026-42766
|
2026-06-16 03:25 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
14
|
8.2 |
HIGH
Network
|
erlang
|
erlang\/otp erts
|
Stack-based Buffer Overflow vulnerability in Erlang OTP erts (inet_drv) allows an unauthenticated remote attacker to crash the BEAM VM by sending a crafted SCTP ERROR chunk.
The sctp_parse_error_chu…
Update
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-49759
|
2026-06-16 03:24 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
15
|
6.5 |
MEDIUM
Network
|
erlang
|
erlang\/otp erlang\/ssl
|
Reliance on IP Address for Authentication vulnerability in Erlang/OTP ssl (inet_tls_dist module) allows unauthenticated bypass of the distribution-over-TLS LAN allowlist.
The inet_tls_dist:check_ip/…
Update
|
CWE-863 CWE-1025
Incorrect Authorization Comparison Using Wrong Factors
|
CVE-2026-48860
|
2026-06-16 03:24 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
16
|
5.3 |
MEDIUM
Network
|
erlang
|
erlang\/otp erlang\/ssh
|
Observable Timing Discrepancy vulnerability in Erlang/OTP ssh (ssh_auth, ssh_options modules) allows unauthenticated remote username enumeration via timing side-channel in password authentication.
W…
Update
|
CWE-208
Information Exposure Through Timing Discrepancy
|
CVE-2026-48859
|
2026-06-16 03:23 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
17
|
6.5 |
MEDIUM
Network
|
erlang
|
erlang\/inets erlang\/otp
|
Sensitive Data Exposure vulnerability in Erlang OTP inets (httpc_response module) allows Retrieve Embedded Sensitive Data.
The httpc client forwards the Authorization and Proxy-Authorization request…
Update
|
CWE-601
Open Redirect
|
CVE-2026-48856
|
2026-06-16 03:23 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
18
|
6.5 |
MEDIUM
Network
|
erlang
|
erlang\/otp erlang\/ssh
|
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Erlang OTP ssh (ssh_sftpd module) allows File Discovery.
The SSH_FXP_READLINK handler in ssh_sftpd sends the raw result of…
Update
|
CWE-200
Information Exposure
|
CVE-2026-48855
|
2026-06-16 03:23 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
19
|
5.5 |
MEDIUM
Local
|
erlang
|
erl_interface erlang\/otp
|
Stack-based Buffer Overflow vulnerability in Erlang OTP (erl_interface) allows Stack-based Buffer Overflow.
This vulnerability is associated with program file lib/erl_interface/src/misc/ei_printterm…
Update
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-49760
|
2026-06-16 03:23 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
20
|
7.8 |
HIGH
Local
|
microsoft
|
pc_manager
|
Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally.
Update
|
CWE-59
Link Following
|
CVE-2026-50511
|
2026-06-16 03:23 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|