|
3131
|
7.5 |
HIGH
Network
|
protocol
|
libp2p
|
libp2p-rust is the official rust language Implementation of the libp2p networking stack. Prior to 0.17.1, libp2p-rendezvous server has no limit on how many namespaces a single peer can register. A m…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-35405
|
2026-04-24 22:37 |
2026-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3132
|
6.5 |
MEDIUM
Network
|
libsixel
|
libsixel
|
In Libsixel prior to and including v1.10.3, a NULL pointer dereference in the stb_image.h component of libsixel allows attackers to cause a denial of service (DOS) via a crafted PICT file.
|
CWE-476
NULL Pointer Dereference
|
CVE-2021-45340
|
2026-04-24 22:35 |
2022-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3133
|
6.5 |
MEDIUM
Network
|
libsixel
|
libsixel
|
En Libsixel versiones anteriores a v1.10.3 incluyéndola, una desreferencia de puntero NULL en el componente stb_image.h de libsixel permite a atacantes causar una denegación de servicio (DOS) por med…
|
CWE-476
NULL Pointer Dereference
|
CVE-2021-45340
|
2026-04-24 22:35 |
2022-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3134
|
8.8 |
HIGH
Network
|
libsixel
|
libsixel
|
libsixel before 1.10 is vulnerable to Buffer Overflow in libsixel/src/quant.c:867.
|
CWE-787
Out-of-bounds Write
|
CVE-2021-40656
|
2026-04-24 22:34 |
2022-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3135
|
8.8 |
HIGH
Network
|
libsixel
|
libsixel
|
libsixel versiones anteriores a 1.10, es vulnerable a un desbordamiento del búfer en libsixel/src/quant.c:867
|
CWE-787
Out-of-bounds Write
|
CVE-2021-40656
|
2026-04-24 22:34 |
2022-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3136
|
6.5 |
MEDIUM
Network
|
saitoha
|
libsixel
|
An invalid read in the stb_image.h component of libsixel prior to v1.8.5 allows attackers to cause a denial of service (DOS) via a crafted PSD file.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-21049
|
2026-04-24 22:34 |
2021-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3137
|
6.5 |
MEDIUM
Network
|
saitoha
|
libsixel
|
Una lectura no válida en el componente stb_image.h de libsixel versiones anteriores a v1.8.5, permite a atacantes causar una denegación de servicio (DOS) por medio de un archivo PSD diseñado
|
CWE-125
Out-of-bounds Read
|
CVE-2020-21049
|
2026-04-24 22:34 |
2021-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3138
|
4.8 |
MEDIUM
Network
|
mitmproxy
|
mitmproxy
|
mitmproxy is a interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers and mitmweb is a web-based interface for mitmproxy. In mitmproxy 12.2.1 and below, the b…
|
CWE-90
LDAP Injection
|
CVE-2026-40606
|
2026-04-24 22:33 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3139
|
8.2 |
HIGH
Network
|
protocol
|
libp2p
|
libp2p-rust is the official rust language Implementation of the libp2p networking stack. Prior to 0.17.1, the rendezvous server stores pagination cookies without bounds. An unauthenticated peer can r…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-35457
|
2026-04-24 22:32 |
2026-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3140
|
2.7 |
LOW
Network
|
openbao
|
openbao
|
OpenBao is an open source identity-based secrets management system. OpenBao's namespaces provide multi-tenant separation. Prior to version 2.5.3, a tenant who leaks token accessors can have their tok…
|
CWE-1259
Improper Restriction of Security Token Assignment
|
CVE-2026-40264
|
2026-04-24 22:29 |
2026-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|