CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1 (more results available)

CVE-2026-101322 HIGH

In Eclipse BaSyx AAS Web UI versions v2-241220 through releases before v2-260924, the shared request handler attached the selected infrastructure's `Authorizat…

CVSS 8.3 EPSS n/a Oct 1, 2026
CVE-2026-102717 HIGH

MQTT WebSocket setter ABI mismatch may disclose memory or cause a crash

CVSS 7.5 EPSS 0.46% Sep 30, 2026
CVE-2026-102730 HIGH

Mounting an attacker-controlled NAND flash image (`lx_nand_flash_open()`) triggers an unbounded out-of-bounds heap **write** in LevelX's NAND flash-translation…

CVSS 8.6 EPSS 0.12% Sep 29, 2026
CVE-2026-102729 MEDIUM

`gx_binres_theme_load()` sizes its theme buffer for the theme it was asked for, and allocates it even when the resource holds no theme with that id. A theme id…

CVSS 5.9 EPSS 0.12% Sep 29, 2026
CVE-2026-102727 MEDIUM

FTP Passive Data Connection Not Bound to the Authenticated Control Peer

CVSS 6.0 EPSS 0.20% Sep 29, 2026
CVE-2026-102728 HIGH

Two client-side TLS/DTLS handshake parsers in NetX Secure read fields from a server-supplied message before validating that the message is long enough to conta…

CVSS 7.5 EPSS 0.24% Sep 29, 2026
CVE-2026-102726 MEDIUM

Unbounded PPP IPCP Option Parsing Causes a Worker Stall and Out-of-bounds Read

CVSS 6.0 EPSS 0.15% Sep 29, 2026
CVE-2026-102725 MEDIUM

Out-of-bounds Read from Unvalidated MSRP Attribute List Length

CVSS 6.0 EPSS 0.15% Sep 29, 2026
CVE-2026-102724 MEDIUM

NULL Pointer Dereference When Evicting the Sole MSRP Attribute

CVSS 6.0 EPSS 0.15% Sep 29, 2026
CVE-2026-102723 MEDIUM

NULL Pointer Dereference on MSRP Attribute Table Exhaustion

CVSS 6.0 EPSS 0.15% Sep 29, 2026
CVE-2026-102722 MEDIUM

In the IPv4 PASV path, the FTP Client accepts whatever address was sent in the server's `227` reply. Validation only covers the parse and the non-zero values,…

CVSS 6.9 EPSS 0.24% Sep 29, 2026
CVE-2026-102721 MEDIUM

A TFTP server that answers with a short ERROR packet makes the client read up to 64 bytes past the received datagram. Each receive path checks only that the da…

CVSS 6.9 EPSS 0.25% Sep 29, 2026
CVE-2026-102720 MEDIUM

A DHCP server, or anyone on the LAN who answers a DISCOVER first, can make the client read about a kilobyte past the end of the received message. The option wa…

CVSS 5.3 EPSS 0.15% Sep 29, 2026
CVE-2026-102719 MEDIUM

Predictable DTLS HelloVerifyRequest Cookie in NetX Secure

CVSS 6.3 EPSS 0.21% Sep 29, 2026
CVE-2026-102718 HIGH

hey, `_nx_snmp_utility_object_id_get` in the NetX Duo SNMP addon does not validate the claimed OID data length against the actual buffer size when the OID uses…

CVSS 8.7 EPSS 0.31% Sep 29, 2026
CVE-2026-102716 HIGH

An unauthenticated client can drain the RTSP server's packet pool with a couple of dozen requests that carry a Session header the parser cannot convert. The Se…

CVSS 8.7 EPSS 0.25% Sep 29, 2026
CVE-2026-102715 HIGH

mDNS string-cache lookup matches on slot size, so a peer name aliases a shorter one and the response encoder writes past the packet

CVSS 7.1 EPSS 0.15% Sep 29, 2026
CVE-2026-102714 HIGH

`_nx_icmpv6_validate_options()` scans the option area with `while (length > 2)` (`common/src/nx_icmpv6_validate_options.c:79`). An area whose size leaves a one…

CVSS 7.1 EPSS 0.15% Sep 29, 2026
CVE-2026-102713 HIGH

The TFTP server accepts a DATA datagram of any size. The dispatcher rejects datagrams shorter than four bytes (nxd_tftp_server.c:1037) and nothing anywhere che…

CVSS 8.8 EPSS 0.31% Sep 29, 2026
CVE-2026-102712 HIGH

On the first DTLS ClientHello, the parser copies a device-claimed session_id length and validates the ciphersuite-list length against the total record length i…

CVSS 8.8 EPSS 0.25% Sep 29, 2026
CVE-2026-102711 MEDIUM

Two issues in the ThreadX loadable-module loader, reached when a device loads an attacker-controlled module object via `_txm_module_manager_memory_load` / `_tx…

CVSS 5.6 EPSS 0.07% Sep 29, 2026
CVE-2026-102710 CRITICAL

Attacker model / Preconditions: a loaded `TXM_MODULE_USER_MODE | TXM_MODULE_MEMORY_PROTECTION` module issuing kernel dispatch calls, on a build with `TX_ENABLE…

CVSS 9.3 EPSS 0.10% Sep 29, 2026
CVE-2026-102709 HIGH

Improper validation of non-secure (NS) pointers in multiple TrustZone-M non-secure callable (NSC) entry functions allows an attacker executing in the non-secur…

CVSS 8.4 EPSS 0.10% Sep 29, 2026
CVE-2026-102762 HIGH

The NetX Duo MQTT client leaks the packet carrying a malformed PUBLISH message. Each malformed PUBLISH costs one packet, or one chain of packets, from the netw…

CVSS 8.2 EPSS 0.21% Sep 29, 2026
CVE-2026-102761 CRITICAL

NetX Duo's WebSocket client resets the unmasking cursor to the first `NX_PACKET` each time it advances through a chained packet, while the loop's upper bound b…

CVSS 9.3 EPSS 0.25% Sep 29, 2026

Showing 1 to 25 CVEs · page 1 (more available)