CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1 (more results available)

CVE-2026-76014 MEDIUM

BusyBox FEATURE_WGET_TIMEOUT wget.c null pointer dereference

CVSS 4.8 EPSS 0.16% Aug 19, 2026
CVE-2026-38755 HIGH

busybox: Busybox: Denial of Service via heap overflow in evalcommand() function

CVSS 7.5 EPSS 0.34% Jul 15, 2026
CVE-2026-38754 HIGH

busybox: Busybox: Denial of Service via heap overflow in ifsbreakup() function

CVSS 7.5 EPSS 0.41% Jul 15, 2026
CVE-2026-38753 HIGH

busybox: Busybox: Denial of Service via crafted AWK script in awk_sub() function

CVSS 7.5 EPSS 0.25% Jul 15, 2026
CVE-2026-38752 HIGH

busybox: BusyBox: Denial of Service via crafted AWK script

CVSS 7.5 EPSS 0.34% Jul 15, 2026
CVE-2025-60876 MEDIUM

busybox: BusyBox wget: HTTP request-target allows header injection

CVSS 6.5 EPSS 0.29% Nov 10, 2025
CVE-2025-46394 LOW

In tar in BusyBox through 1.37.0, a TAR archive can have filenames hidden from a listing through the use of terminal escape sequences.

CVSS 3.3 EPSS 0.18% Apr 23, 2025
CVE-2024-58251 LOW

In netstat in BusyBox through 1.37.0, local users can launch of network application with an argv[0] containing an ANSI terminal escape sequence, leading to a d…

CVSS 2.5 EPSS 0.18% Apr 23, 2025
CVE-2023-42366 HIGH

busybox: A heap-buffer-overflow

CVSS 7.1 EPSS 0.41% Nov 27, 2023
CVE-2023-42365 HIGH

busybox: use-after-free

CVSS 7.8 EPSS 0.40% Nov 27, 2023
CVE-2023-42364 HIGH

busybox: use-after-free

CVSS 7.8 EPSS 0.43% Nov 27, 2023
CVE-2023-42363 HIGH

busybox: use-after-free in awk

CVSS 7.8 EPSS 0.43% Nov 27, 2023
CVE-2023-39810 HIGH

busybox: CPIO command of Busybox allows attackers to execute a directory traversal

CVSS 7.8 EPSS 0.77% Aug 28, 2023
CVE-2022-48174 CRITICAL

busybox: stack overflow vulnerability in ash.c leads to arbitrary code execution

CVSS 9.8 EPSS 3.16% Aug 22, 2023
CVE-2022-30065 HIGH

busybox: A use-after-free in Busybox's awk applet leads to denial of service

CVSS 7.8 EPSS 1.25% May 18, 2022
CVE-2022-28391 HIGH

busybox: remote attackers may execute arbitrary code if netstat is used

CVSS 8.8 EPSS 3.49% Apr 3, 2022
CVE-2021-42386 HIGH

busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the nvalloc()

CVSS 7.2 EPSS 2.73% Nov 15, 2021
CVE-2021-42385 HIGH

busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

CVSS 7.2 EPSS 2.79% Nov 15, 2021
CVE-2021-42384 HIGH

busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the handle_special()

CVSS 7.2 EPSS 2.73% Nov 15, 2021
CVE-2021-42383 HIGH

busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

CVSS 7.2 EPSS 2.21% Nov 15, 2021
CVE-2021-42382 HIGH

busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_s()

CVSS 7.2 EPSS 2.76% Nov 15, 2021
CVE-2021-42381 HIGH

busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the hash_init()

CVSS 7.2 EPSS 2.79% Nov 15, 2021
CVE-2021-42380 HIGH

busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the clrvar()

CVSS 7.2 EPSS 3.09% Nov 15, 2021
CVE-2021-42379 HIGH

busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the next_input_file()

CVSS 7.2 EPSS 2.79% Nov 15, 2021
CVE-2021-42378 HIGH

busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_i()

CVSS 7.2 EPSS 2.73% Nov 15, 2021

Showing 1 to 25 CVEs · page 1 (more available)