7.7
CVE-2026-25506 - MUNGE has a buffer overflow in message unpacking allows key leakage and credential forgery
MUNGE is an authentication service for creating and validating user credentials. From 0.5 to 0.5.17, local attacker can exploit a buffer overflow vulnerability in munged (the MUNGE authentication daemon) to leak cryptographic key material from process memory. With the leaked key material, the attacβ¦
7.1
CVE-2026-25613 - An unsafe cast in the MongoDB query planner can result in a segmentation fault.
An authorized user may disable the MongoDB server by issuing a query against a collection that contains an invalid compound wildcard index.
7.1
CVE-2026-1849 - Mongod can run out of stack memory when expressions create deeply nested documents
MongoDB Server may experience an out-of-memory failure while evaluating expressions that produce deeply nested documents. The issue arises in recursive functions because the server does not periodically check the depth of the expression.
7.8
CVE-2025-14821 - libssh: libssh: Insecure default configuration leads to local man-in-the-middle attacks on Windows
A flaw was found in libssh. This vulnerability allows local man-in-the-middle attacks, security downgrades of SSH (Secure Shell) connections, and manipulation of trusted host information, posing a significant risk to the confidentiality, integrity, and availability of SSH communications via an inseβ¦
7.1
CVE-2026-1850 - An authorized user may disable the MongoDB server by issuing a certain type of complex query due toβ¦
Complex queries can cause excessive memory usage in MongoDB Query Planner resulting in an Out-Of-Memory Crash.
3.3
CVE-2026-0965 - libssh: libssh: Denial of Service via improper configuration file handling
No description is available for this CVE.
0.0
CVE-2026-0966 - libssh: Buffer underflow in ssh_get_hexa() on invalid input
No description is available for this CVE.
2.2
CVE-2026-0967 - libssh: libssh: Denial of Service via inefficient regular expression processing
No description is available for this CVE.
3.1
CVE-2026-0968 - libssh: libssh: Denial of Service due to malformed SFTP message
No description is available for this CVE.
5.0
CVE-2026-0964 - libssh: Improper sanitation of paths received from SCP servers
No description is available for this CVE.