Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
5.3 MEDIUM
CVE-2026-21438 — webtransport-go affected by a Memory Exhaustion Attack due to Missing Cleanup of Streams …

webtransport-go is an implementation of the WebTransport protocol. Prior to 0.10.0, an attacker can cause unbounded memory consumption repeatedly creating and closing many WebTransport streams. Close…

webtransport-go | Remote | Denial of Service
Feb 12, 2026 Feb 19, 2026
Feb 12, 2026
Feb 19, 2026
7.5 HIGH
CVE-2026-21435 — webtransport-go CloseWithError can block indefinitely

webtransport-go is an implementation of the WebTransport protocol. Prior to v0.10.0, an attacker can cause a denial of service in webtransport-go by preventing or indefinitely delaying WebTransport s…

webtransport-go | Remote | Denial of Service
Feb 12, 2026 Feb 19, 2026
Feb 12, 2026
Feb 19, 2026
7.5 HIGH
CVE-2026-21434 — webtransport-go affected by Memory Exhaustion Attack due to Missing Length Check in WT_CL…

webtransport-go is an implementation of the WebTransport protocol. From 0.3.0 to 0.9.0, an attacker can cause excessive memory consumption in webtransport-go's session implementation by sending a WT_…

webtransport-go | Remote | Memory Corruption
Feb 12, 2026 Feb 19, 2026
Feb 12, 2026
Feb 19, 2026
Showing 20 of 5343 Results