CVE Vulnerability Database

Search and browse 380,959 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-13506HIGH8.7In Bouncy Castle for Java before 1.85, Lazy ASN.1 sequence forcing resets nesting-depth guard. This issue also affects B...
CVE-2026-12860HIGH8.7In Bouncy Castle for Java before 1.85, RSA PKCS#1 verification skips last two hash bytes in NULL-omitted path. This issu...
CVE-2026-12852HIGH8.7In Bouncy Castle for Java before 1.85, MLS wire decoder allocates attacker-declared opaque length before bounds check.
CVE-2026-12817HIGH8.7In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also af...
CVE-2026-12816HIGH8.7In Bouncy Castle for Java before 1.85, IESEngine stream-mode MAC forgery via length-dependent KDF split. This issue also...
CVE-2026-12803HIGH8.7In Bouncy Castle for Java before 1.85, KCCMBlockCipher MAC does not bind nonce when AAD is absent (cross-nonce AEAD forg...
CVE-2026-12802HIGH8.7In Bouncy Castle for Java before 1.85, CMS AuthEnvelopedData fails to enforce tag-length on decryption. This issue also ...
CVE-2026-58063MEDIUM5.3In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue al...
CVE-2026-58062CRITICAL9.3In Bouncy Castle for Java before 1.85, Stapled OCSP response accepted without binding to the checked certificate. This i...
CVE-2026-58061HIGH8.7In Bouncy Castle for Java before 1.85, CCM-family modes write plaintext to caller buffer before tag check. This issue al...
CVE-2026-58060HIGH8.7In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This is...
CVE-2026-58059HIGH8.7In Bouncy Castle for Java before 1.85, Quadratic-time escaping when stringifying X.500 distinguished names. This issue a...
CVE-2026-20498MEDIUM6In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local es...
CVE-2026-20497MEDIUM6In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation...
CVE-2026-20496MEDIUM4.4In geniezone, there is a possible out of bounds read due to a missing bounds check. This could lead to local information...
CVE-2026-20495HIGH7.8In Bluetooth driver, there is a possible permission bypass due to a missing permission check. This could lead to local e...
CVE-2026-20494MEDIUM5.5In wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc...
CVE-2026-20493MEDIUM4.4In wifi, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of servi...
CVE-2026-20492MEDIUM5.5In Audio HAL, there is a possible system becoming unresponsive due to a race condition. This could lead to local denial ...
CVE-2026-20491MEDIUM5.5In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of ser...
CVE-2026-20490MEDIUM4.4In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of servic...
CVE-2026-20489MEDIUM4.4In display, there is a possible information disclosure due to an integer overflow. This could lead to local information ...
CVE-2026-20488MEDIUM4.4In display, there is a possible information disclosure due to a missing bounds check. This could lead to local informati...
CVE-2026-20486MEDIUM6.7In imgsensor, there is a possible application crash due to incorrect error handling. This could lead to local escalation...
CVE-2026-20485MEDIUM6In HFRP, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p...