Freeswitch / Freeswitch
21 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-49848 | FreeSWITCH: Pre-authentication `userVariables` injection in `mod_verto` | MEDIUM | 4.3 | Jun 9, 2026 |
| CVE-2026-49847 | FreeSWITCH: Stack overflow in bundled cJSON parser via deeply nested JSON | HIGH | 7.5 | Jun 9, 2026 |
| CVE-2026-49843 | FreeSWITCH: Pre-authentication session eviction via attacker-chosen `sessid` in `mod_verto` | MEDIUM | 5.3 | Jun 9, 2026 |
| CVE-2026-49842 | FreeSWITCH: Pre-authentication bandwidth amplification via `mod_verto` speed-test frames | HIGH | 7.5 | Jun 9, 2026 |
| CVE-2026-49841 | FreeSWITCH: Pre-authentication heap buffer overflow in `mod_verto` HTTP POST body read | CRITICAL | 9.8 | Jun 9, 2026 |
| CVE-2026-49840 | FreeSWITCH: Pre-authentication heap buffer overflow in libesl `Content-Length` parsing | CRITICAL | 9.1 | Jun 9, 2026 |
| CVE-2026-49475 | FreeSWITCH: Out-of-bounds memory access in core STUN attribute parsing | HIGH | 7.5 | Jun 9, 2026 |
| CVE-2026-49472 | FreeSWITCH includes a vulnerable function, PREFIX(prologTok)() from libexpat | MEDIUM | 5.3 | Jun 9, 2026 |
| CVE-2026-45771 | Freeswitch Denial-of-Service in SIP PUBLISH Requests via XML Entity Expansion | HIGH | 7.5 | Jun 9, 2026 |
| CVE-2023-51443 | FreeSWITCH susceptible to Denial of Service via DTLS Hello packets during call initiation | HIGH | 7.5 | Dec 27, 2023 |
| CVE-2023-40019 | FreeSWITCH allows authorized users to cause a denial of service attack by sending re-INVITE with SDP containing duplicate codec names | HIGH | 7.5 | Sep 15, 2023 |
| CVE-2023-40018 | FreeSWITCH allows remote users to trigger out of bounds write by offering an ICE candidate with unknown component ID | HIGH | 7.5 | Sep 15, 2023 |
| CVE-2021-41158 | FreeSWITCH vulnerable to SIP digest leak for configured gateways | HIGH | 7.5 | Oct 26, 2021 |
| CVE-2021-41157 | FreeSWITCH does not authenticate SIP SUBSCRIBE requests by default | MEDIUM | 5.3 | Oct 26, 2021 |
| CVE-2021-41105 | FreeSWITCH susceptible to Denial of Service via invalid SRTP packets | HIGH | 7.5 | Oct 25, 2021 |
| CVE-2021-41145 | FreeSWITCH susceptible to Denial of Service via SIP flooding | HIGH | 8.6 | Oct 25, 2021 |
| CVE-2021-37624 | FreeSWITCH does not authenticate SIP MESSAGE requests, leading to spam and message spoofing | HIGH | 7.5 | Oct 25, 2021 |
| CVE-2019-19492 | FreeSWITCH 1.6.10 through 1.10.1 has a default password in event_socket.conf.xml. | CRITICAL | 9.8 | Dec 2, 2019 |
| CVE-2018-19911 | FreeSWITCH through 1.8.2, when mod_xml_rpc is enabled, allows remote attackers to execute arbitrary commands via the api/system or txtapi/system (or api/bg_sys… | HIGH | 7.5 | Dec 6, 2018 |
| CVE-2015-7392 | Heap-based buffer overflow in the parse_string function in libs/esl/src/esl_json.c in FreeSWITCH before 1.4.23 and 1.6.x before 1.6.2 allows remote attackers t… | HIGH | 7.5 | Oct 5, 2015 |
| CVE-2013-2238 | Multiple buffer overflows in the switch_perform_substitution function in switch_regex.c in FreeSWITCH 1.2 allow remote attackers to cause a denial of service (… | MEDIUM | 6.8 | Sep 30, 2013 |
Showing 1 to 21 of 21 CVEs