CVE-2026-6328
Last modified
CVE-2026-6328 is a high-severity vulnerability rated 8.3/10 on the CVSS scale. Improper input validation, Improper verification of cryptographic signature vulnerability in XQUIC Project XQUIC xquic on Linux (QUIC protocol implementation, packet processing module, STREAM frame handler modules) allows Protocol Manipulation.This issue affects XQUIC: through 1.8.3.. EPSS estimates a 0.20% chance of exploitation in the next 30 days.
Description
Improper input validation, Improper verification of cryptographic signature vulnerability in XQUIC Project XQUIC xquic on Linux (QUIC protocol implementation, packet processing module, STREAM frame handler modules) allows Protocol Manipulation.This issue affects XQUIC: through 1.8.3.
Metrics
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-6328?
How severe is CVE-2026-6328?
How do I fix CVE-2026-6328?
How Strix Helps
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-63273LibreOffice Draw can import PDF documents. A heap buffer ove…5.4
- CVE-2026-63274LibreOffice Draw can import PDF documents. A heap buffer ove…5.4
- CVE-2026-63275LibreOffice can read CFF fonts, which may be embedded in doc…5.4
- CVE-2026-63276LibreOffice converts CFF fonts to Type 1 when it subsets a f…5.4
- CVE-2026-63278URLs could be constructed which expanded environment variabl…6.7
- CVE-2026-63279LibreOffice can import PICT images, which may be embedded in…5.4
- CVE-2026-63280Joomla Extension - regularlabs.com - Inconsistent CSRF token…8.8
- CVE-2026-63281Joomla Extension - regularlabs.com - XSS vulnerability in Re…4.8
- CVE-2026-6329PKCS#12 MAC verification uses an attacker-controlled compari…6.5
- CVE-2026-63293A link following vulnerability in LXD allows an attacker to …9.9
- CVE-2026-63294A link following vulnerability in LXD allows an attacker to …9.9
- CVE-2026-63295An authorization bypass vulnerability in LXD allows an authe…4.3
Are you affected by CVE-2026-6328?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
