CVE Vulnerability Database
Search and browse 380,959 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-13506 | HIGH | 8.7 | 0.3% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, Lazy ASN.1 sequence forcing resets nesting-depth guard. This issue also affects B... |
| CVE-2026-12860 | HIGH | 8.7 | 0.2% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, RSA PKCS#1 verification skips last two hash bytes in NULL-omitted path. This issu... |
| CVE-2026-12852 | HIGH | 8.7 | 0.3% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, MLS wire decoder allocates attacker-declared opaque length before bounds check. |
| CVE-2026-12817 | HIGH | 8.7 | 0.2% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also af... |
| CVE-2026-12816 | HIGH | 8.7 | 0.2% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, IESEngine stream-mode MAC forgery via length-dependent KDF split. This issue also... |
| CVE-2026-12803 | HIGH | 8.7 | 0.2% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, KCCMBlockCipher MAC does not bind nonce when AAD is absent (cross-nonce AEAD forg... |
| CVE-2026-12802 | HIGH | 8.7 | 0.2% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, CMS AuthEnvelopedData fails to enforce tag-length on decryption. This issue also ... |
| CVE-2026-58063 | MEDIUM | 5.3 | 0.3% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue al... |
| CVE-2026-58062 | CRITICAL | 9.3 | 0.2% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, Stapled OCSP response accepted without binding to the checked certificate. This i... |
| CVE-2026-58061 | HIGH | 8.7 | 0.2% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, CCM-family modes write plaintext to caller buffer before tag check. This issue al... |
| CVE-2026-58060 | HIGH | 8.7 | 0.4% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This is... |
| CVE-2026-58059 | HIGH | 8.7 | 0.3% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, Quadratic-time escaping when stringifying X.500 distinguished names. This issue a... |
| CVE-2026-20498 | MEDIUM | 6 | 0.1% | Aug 3, 2026 | In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local es... |
| CVE-2026-20497 | MEDIUM | 6 | 0.1% | Aug 3, 2026 | In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation... |
| CVE-2026-20496 | MEDIUM | 4.4 | 0.1% | Aug 3, 2026 | In geniezone, there is a possible out of bounds read due to a missing bounds check. This could lead to local information... |
| CVE-2026-20495 | HIGH | 7.8 | 0.1% | Aug 3, 2026 | In Bluetooth driver, there is a possible permission bypass due to a missing permission check. This could lead to local e... |
| CVE-2026-20494 | MEDIUM | 5.5 | 0.1% | Aug 3, 2026 | In wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc... |
| CVE-2026-20493 | MEDIUM | 4.4 | 0.1% | Aug 3, 2026 | In wifi, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of servi... |
| CVE-2026-20492 | MEDIUM | 5.5 | 0.1% | Aug 3, 2026 | In Audio HAL, there is a possible system becoming unresponsive due to a race condition. This could lead to local denial ... |
| CVE-2026-20491 | MEDIUM | 5.5 | 0.1% | Aug 3, 2026 | In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of ser... |
| CVE-2026-20490 | MEDIUM | 4.4 | 0.1% | Aug 3, 2026 | In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of servic... |
| CVE-2026-20489 | MEDIUM | 4.4 | 0.1% | Aug 3, 2026 | In display, there is a possible information disclosure due to an integer overflow. This could lead to local information ... |
| CVE-2026-20488 | MEDIUM | 4.4 | 0.1% | Aug 3, 2026 | In display, there is a possible information disclosure due to a missing bounds check. This could lead to local informati... |
| CVE-2026-20486 | MEDIUM | 6.7 | 0.1% | Aug 3, 2026 | In imgsensor, there is a possible application crash due to incorrect error handling. This could lead to local escalation... |
| CVE-2026-20485 | MEDIUM | 6 | 0.1% | Aug 3, 2026 | In HFRP, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p... |
