Skip to main content

Daily materialized evidence profile

CWE CWE-476

This factual profile is rebuilt from stored cvebuzz evidence each day. It is a timestamped snapshot, not an immutable publication.

Refreshed UTC

Stored evidence summary

Sample size
5,519
CVEs with mentions
1,743
Total mentions
7,452
CVEs with KEV
1
CVEs with PoC
76

Attack vector counts

Network
2,037
Adjacent network
111
Local
3,341
Physical
29

Top snapshot Buzz entries

Up to five denormalized entries captured by the same daily profile refresh.

CVE-2026-21525

Published Feb 10, 2026

Null pointer dereference in Windows Remote Access Connection Manager allows an unauthorized attacker to deny service locally.

CVSS 6.2 · Medium
evidence mentions
11
Buzz score
69.8
KEV listed

CVE-2026-39835

Published May 22, 2026

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertCh…

CVSS 5.3 · Medium
evidence mentions
52
Buzz score
50.0

CVE-2026-23381

Published Mar 25, 2026

In the Linux kernel, the following vulnerability has been resolved: net: bridge: fix nd_tbl NULL dereference when IPv6 is disabled When booting with the 'ipv6.disable=1' paramet…

CVSS 5.5 · Medium
evidence mentions
12
Buzz score
45.6

CVE-2026-23398

Published Mar 26, 2026

In the Linux kernel, the following vulnerability has been resolved: icmp: fix NULL pointer dereference in icmp_tag_validation() icmp_tag_validation() unconditionally dereference…

CVSS 5.5 · Medium
evidence mentions
12
Buzz score
45.6

CVE-2026-23439

Published Apr 3, 2026

In the Linux kernel, the following vulnerability has been resolved: udp_tunnel: fix NULL deref caused by udp_sock_create6 when CONFIG_IPV6=n When CONFIG_IPV6 is disabled, the ud…

CVSS 5.5 · Medium
evidence mentions
12
Buzz score
45.6