CVE detail
CVE-2026-10650
A flaw has been found in warmcat libwebsockets up to 4.5.8. This issue affects the function lws_ssh_parse_plaintext of the file plugins/protocol_lws_ssh_base/sshd.c of the component SSH Protocol Handler. Executing a manipulation of the argument msg_len can lead to resource consumption. The attack may be launched remotely. The exploit has been published and may be used. This patch is called 3f9f0c6ecaf0e6f3f219d30632c5d1f2479d7498. A patch should be applied to remediate this issue.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 22.0 · diversity 6.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
8 source links · newest first
- https://vuldb.com/vuln/367955/ctivuldb.com
No excerpt available.
Exploitvuldb.comJun 2, 2026, 10:16 PM - https://vuldb.com/vuln/367955vuldb.com
No excerpt available.
Exploitvuldb.comJun 2, 2026, 10:16 PM - https://vuldb.com/submit/830261vuldb.com
No excerpt available.
Exploitvuldb.comJun 2, 2026, 10:16 PM - https://vuldb.com/cve/CVE-2026-10650vuldb.com
No excerpt available.
Exploitvuldb.comJun 2, 2026, 10:16 PM No excerpt available.
Exploitgithub.comJun 2, 2026, 10:16 PMNo excerpt available.
Exploitgithub.comJun 2, 2026, 10:16 PMNo excerpt available.
Exploitgithub.comJun 2, 2026, 10:16 PMNo excerpt available.
Exploitgithub.comJun 2, 2026, 10:16 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-38763CVSS 5.5 · Medium
An issue in Unistal Systems Pvt. Ltd.Protegent 360 v2.0.0.4 allows a local attacker to cause a denial of service via the function sub_13828
- CVE-2026-10802CVSS 2.1 · Low
A vulnerability was detected in keystonejs keystone up to 20260319. This vulnerability affects unknown code in the library packages/core/src/lib/core/queries/output-field.ts of th…
- CVE-2026-10705CVSS 2.3 · Low
A flaw has been found in dask up to 3.0. Affected by this issue is the function nunique_approx of the file dask/dataframe/hyperloglog.py of the component HLL Handler. This manipul…
- CVE-2026-10224CVSS 5.5 · Medium
A security vulnerability has been detected in NousResearch hermes-agent up to 2026.4.30. This vulnerability affects the function _handle_webhook_request of the file gateway/platfo…
- CVE-2026-10156CVSS 2.1 · Low
A vulnerability was determined in Open5GS up to 2.7.7. This affects the function handle_amf_info in the library /lib/sbi/nnrf-handler.c of the component nf-instances Endpoint. Exe…
- CVE-2026-10069CVSS 8.7 · High
A vulnerability has been found in Shibby Tomato 1.28. The impacted element is an unknown function of the file usr/sbin/miniupnpd. Such manipulation leads to resource consumption.…