CVE detail
CVE-2026-14685
A vulnerability has been found in HdrHistogram up to 2.2.2. This vulnerability affects the function recordValueWithCount of the file src/main/java/org/HdrHistogram/AbstractHistogram.java of the component AbstractHistogram. Such manipulation of the argument Count leads to state issue. The attack can only be performed from a local environment. The exploit has been disclosed to the public and may be used. The existence of this vulnerability is still disputed at present. This issue is disputed due to the potential lack of crossing of security boundaries and the pre-requisites for a successful attack.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 19.5 · diversity 6.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 6
- within the 30d window
- Peak daily
- 6
- highest bucket
Evidence
Source links by recency
6 source links · newest first
- https://vuldb.com/vuln/376281/ctivuldb.com
No excerpt available.
Exploitvuldb.comJul 5, 2026, 12:17 AM - https://vuldb.com/vuln/376281vuldb.com
No excerpt available.
Exploitvuldb.comJul 5, 2026, 12:17 AM - https://vuldb.com/submit/846761vuldb.com
No excerpt available.
Exploitvuldb.comJul 5, 2026, 12:17 AM - https://vuldb.com/cve/CVE-2026-14685vuldb.com
No excerpt available.
Exploitvuldb.comJul 5, 2026, 12:17 AM No excerpt available.
Exploitgithub.comJul 5, 2026, 12:17 AMNo excerpt available.
Exploitgithub.comJul 5, 2026, 12:17 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2024-20455CVSS 8.6 · High
A vulnerability in the process that classifies traffic that is going to the Unified Threat Defense (UTD) component of Cisco IOS XE Software in controller mode could allow an unaut…
- CVE-2020-3574CVSS 7.5 · High
A vulnerability in the TCP packet processing functionality of Cisco IP Phones could allow an unauthenticated, remote attacker to cause the phone to stop responding to incoming cal…
- CVE-2020-3422CVSS 7.5 · High
A vulnerability in the IP Service Level Agreement (SLA) responder feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the IP SLA responder to…
- CVE-2020-3385CVSS 6.5 · Medium
A vulnerability in the deep packet inspection (DPI) engine of Cisco SD-WAN vEdge Routers could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condi…
- CVE-2020-3200CVSS 7.7 · High
A vulnerability in the Secure Shell (SSH) server code of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause an affected device to…
- CVE-2019-1977CVSS 6.8 · Medium
A vulnerability within the Endpoint Learning feature of Cisco Nexus 9000 Series Switches running in Application Centric Infrastructure (ACI) mode could allow an unauthenticated, r…