Skip to main content

CWE archive

CWE-617 CVEs

Programmatic archive

793 CVEs tagged with CWE-6174 Critical, 329 High, 429 Medium, 31 Low, 0 Unrated.

CVE-2026-66754

Published Jul 28, 2026

Rouille 0.1.6 through 3.6.2 contains a reachable assertion vulnerability in the Request::remove_prefix function that allows remote unauthenticated attackers to crash the server by…

CVSS 8.2 · High
evidence mentions
2
Buzz score
17.5

CVE-2026-17574

Published Jul 27, 2026

HDF5 contains a NULL pointer dereference vulnerability. Processing a crafted HDF5 file containing an attribute with an invalid variable-length datatype type field may cause the ap…

CVSS 5.2 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-17513

Published Jul 27, 2026

A vulnerability was found in ggml-org whisper.cpp 95ea8f9b. Affected is the function ggml_ftype_to_ggml_type of the file ggml/src/ggml.c. The manipulation of the argument ftype re…

CVSS 1.9 · Low
evidence mentions
6
Buzz score
26.0

CVE-2026-45815

Published Jul 24, 2026

Reachable Assertion vulnerability in Apache NimBLE. A specially crafted ATT Read Multiple Variable Response (BLE_ATT_OP_READ_MULT_VAR_RSP) may trigger assert in ATT parser. Sever…

CVSS 7.5 · High
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2026-9737

Published Jul 22, 2026

During query planning when reading the sort pattern in raw BSONObj form, in some places we don’t explicitly handle the meta expression case. This may lead to incorrect transformat…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-13073

Published Jul 22, 2026

An authenticated user with read-only privileges can cause the mongod process to terminate abnormally by issuing a crafted aggregation command, resulting in denial of service for a…

CVSS 5.3 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-13058

Published Jul 22, 2026

An authenticated user with basic write privileges can cause the mongod process to terminate abnormally by sending a crafted transaction command with an incomplete set of required…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-13055

Published Jul 22, 2026

The `$_internalIndexKey` aggregation expression can be used by any authenticated user to crash a MongoDB server (mongod). The expression fails to handle compound wildcard index sp…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-13204

Published Jul 22, 2026

If a provably insecure domain is covered by both an NSEC and NSEC3 record at the parent, and there exist an RRSIG for only one of these types, then BIND may exit unexpectedly with…

CVSS 7.5 · High
evidence mentions
3
Buzz score
23.9

CVE-2026-12617

Published Jul 22, 2026

The issue is unexpected program termination based on ordering and/or specific content in responses to queries for CNAME or DNAME, and A records. Specifically, if a client queries…

CVSS 7.5 · High
evidence mentions
2
Buzz score
21.0

CVE-2026-10822

Published Jul 22, 2026

If BIND encounters a particular invalid data structure in a DNS record, it will accept the invalid data, and may subsequently abort and exit. BIND will first need to store a DNS…

CVSS 6.5 · Medium
evidence mentions
3
Buzz score
23.9

CVE-2026-14586

Published Jul 22, 2026

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, in DNS-over-QUIC environments, with high concurrency and under pressure, an assertion in libngtcp2 about monotonic timesta…

CVSS 5.9 · Medium
evidence mentions
2
Buzz score
21.0

CVE-2026-10674

Published Jul 21, 2026

The NXP LPUART serial driver (drivers/serial/uart_mcux_lpuart.c), when CONFIG_UART_USE_RUNTIME_CONFIGURE is enabled, called LPUART_Deinit() at the start of mcux_lpuart_configure()…

CVSS 5.5 · Medium
evidence mentions
2
Buzz score
16.0

CVE-2026-63140

Published Jul 21, 2026

Reachable Assertion (CWE-617) in Elasticsearch can lead to denial of service via Input Data Manipulation (CAPEC-153). A specially crafted search request containing a null value in…

CVSS 6.5 · Medium
evidence mentions
2
Buzz score
21.0

CVE-2026-44435

Published Jul 16, 2026

Quicly is an IETF QUIC protocol implementation intended primarily for use within the H2O HTTP server. Prior to commit 937d0e9, an assertion failure is raised when the total number…

CVSS 7.5 · High
evidence mentions
2
Buzz score
16.0

CVE-2025-56365

Published Jul 14, 2026

A reachable assertion vulnerability exists in the Matter SDK (connectedhomeip) before 1.4.0, in the interaction model command processing logic. When an InvokeCommandRequest is sen…

CVSS 7.5 · High
evidence mentions
3
Buzz score
23.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2025-56362

Published Jul 14, 2026

A reachable assertion vulnerability exists in the Matter SDK (connectedhomeip) before 1.4.2, specifically within the Level Control cluster's periodic server tick logic. When a Mov…

CVSS 7.5 · High
evidence mentions
2
Buzz score
20.5
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2025-56361

Published Jul 14, 2026

A reachable assertion vulnerability exists in the Matter SDK (connectedhomeip) 1.3 thru 1.4, specifically within the Level Control cluster's server tick logic (`emberAfLevelContro…

CVSS 7.5 · High
evidence mentions
2
Buzz score
20.5
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-47475

Published Jul 14, 2026

NVIDIA TensorRT-LLM contains a vulnerability in the OpenAI-compatible inference API where an attacker could trigger a reachable assertion in the sampler thread. A successful explo…

CVSS 6.2 · Medium
evidence mentions
2
Buzz score
17.5

CVE-2026-58307

Published Jul 9, 2026

Out-of-bounds read, Reachable assertion vulnerability in Samsung Open Source Escargot allows Overread Buffers, Input Data Manipulation. This issue affects Escargot: before 2dee22…

CVSS 6.1 · Medium
evidence mentions
2
Buzz score
16.0

CVE-2026-55514

Published Jul 6, 2026

vLLM is a library for LLM inference and serving. From 0.12.0 to before 0.24.0, sending a pure prompt embeds payload in a /v1/completions request with a model using M-RoPE causes E…

CVSS 7.1 · High
evidence mentions
4
Buzz score
21.1
Vendor/product tagsBeta · best-effort

CVE-2026-13122

Published Jul 6, 2026

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachab…

CVSS 5.9 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-50722

Published Jul 2, 2026

Libreswan, via the function RSA_authenticate_hash_signature_pkcs1_1_5_rsa(), did not correctly verify the DER encoding of the ASN.1 digest when the IKEv2 AUTH payload was encoded…

CVSS 8.1 · High
evidence mentions
4
Buzz score
26.1
Vendor/product tagsBeta · best-effort

CVE-2026-50721

Published Jul 2, 2026

Libreswan, via the function RSA_authenticate_hash_signature_raw_rsa(), did not correctly verify the length of the authentication hash when the SIG payload of an IKEv1 packet was e…

CVSS 8.1 · High
evidence mentions
4
Buzz score
26.1
Vendor/product tagsBeta · best-effort

CVE-2026-12413

Published Jul 2, 2026

An invalidly formatted IKEv2 fragment causes the Libreswan pluto daemon to crash and restart. Continued exploitation would cause a denial of service. The function reassemble_v2_in…

CVSS 7.5 · High
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort
Showing 1-25 of 793 CVEsPage 1 of 32