Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
5.5 MEDIUM
CVE-2026-33450 — Out of bounds read in Secure Access MacOS clients prior to 14.50

CVE-2026-33450 is an out of bounds read vulnerability in the Secure Access MacOS client prior to 14.50. Attackers with control of a modified server can send a malformed packet to the client causing…

macos secure_access | Denial of Service
Apr 30, 2026 May 05, 2026
Apr 30, 2026
May 05, 2026
7.5 HIGH
CVE-2026-33449 — Message handler buffer overflow in clients prior to 14.50

CVE-2026-33449 is a buffer overflow in a message handling function of the Secure Access client prior to 14.50. Attackers with control of a modified server can send a cryptographically valid message…

secure_access | Remote | Memory Corruption
Apr 30, 2026 May 05, 2026
Apr 30, 2026
May 05, 2026
6.5 MEDIUM
CVE-2026-28532 — FRRouting < 10.5.3 Integer Overflow in OSPF TLV Parser Functions

FRRouting before 10.5.3 contains an integer overflow vulnerability in seven OSPF Traffic Engineering and Segment Routing TLV parser functions where a uint16_t accumulator variable truncates uint32_t …

frrouting | Memory Corruption
Apr 30, 2026 May 01, 2026
Apr 30, 2026
May 01, 2026
4.6 MEDIUM
CVE-2026-7429 — SSCMS v7.4.0 Reflected Cross-Site Scripting via STL Processing

SSCMS v7.4.0 contains a reflected cross-site scripting vulnerability in the STL processing endpoint that allows attackers to execute arbitrary JavaScript by crafting malicious STL template payloads t…

Remote | Cross-Site Scripting
Apr 30, 2026 May 01, 2026
Apr 30, 2026
May 01, 2026
4.8 MEDIUM
CVE-2026-33448 — Format string vulnerability in MacOS clients prior to 14.50

CVE-2026-33448 is a format string vulnerability in the logging subsystem of Secure Access client for MacOS prior to 14.50. Attackers with control of a modified server can force the client to dump t…

macos secure_access | Information Disclosure
Apr 30, 2026 May 05, 2026
Apr 30, 2026
May 05, 2026
9.8 CRITICAL
CVE-2026-33447 — Apache Secure Access Buffer Overflow Vulnerability

CVE-2026-33447 is a buffer overflow in a message parsing function of the Secure Access client prior to 14.50. Attackers with control of a modified server can send a special packet that can overwrit…

secure_access | Remote | Memory Corruption
Apr 30, 2026 May 05, 2026
Apr 30, 2026
May 05, 2026
9.8 CRITICAL
CVE-2026-33446 — Buffer overflow in client authentication prior to version 14.50

CVE-2026-33446 is a buffer overflow in the authentication sub-system of the Secure Access client prior to 14.50. Attackers with control of a modified server can send a special packet that can overw…

secure_access | Remote | Memory Corruption
Apr 30, 2026 May 05, 2026
Apr 30, 2026
May 05, 2026
7.5 HIGH
CVE-2025-56568 — Open5GS SMF PCO Parser Assertion Failure DOS Vulnerability

Assertion failure vulnerability in the PCO (Protocol Configuration Options) parser in the SMF (Session Management Function) component of Open5GS before v2.7.5 allows remote attackers to cause denial …

Remote | Denial of Service
Apr 30, 2026 May 04, 2026
Apr 30, 2026
May 04, 2026
7.5 HIGH
CVE-2025-46115 — Open5GS Denial of Service

An issue in open5gs v.2.7.3 allows a remote attacker to cause a denial of service via a crafted PDU Session Modification Request

Remote | Denial of Service
Apr 30, 2026 May 04, 2026
Apr 30, 2026
May 04, 2026
Showing 20 of 6949 Results