Vulnerabilities
Vulnerable Software
Security Vulnerabilities
In affected versions of Octopus Server under certain circumstances it is possible for sensitive variables to be printed in the deployment variable snapshot in clear-text.
CVSS Score
7.1
EPSS Score
0.002
Published
2026-08-20
In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to insufficient entropy, which results in being vulnerable to hash flooding attacks, causing a denial of service via crafted XML content.
CVSS Score
5.9
EPSS Score
0.003
Published
2026-08-20
libexpat before 2.8.4 lacks handler call depth tracking with custom encoding callbacks. Thus, a use-after-free can occur. NOTE: this is similar to CVE-2026-50219, CVE-2026-56131 and CVE-2026-56412.
CVSS Score
4.9
EPSS Score
0.001
Published
2026-08-20
An unauthenticated denial-of-service vulnerability was identified in TP-Link TL-MR100 v3.2, TL-MR150 v3.2, TL-MR6400 v8.0 and Archer MR600 v2, due to improper handling of exceptional request conditions that may lead to a NULL pointer dereference.  A remote attacker on an adjacent network can send a specially crated HTTP request to trigger a crash of the HTTP service process. Successful exploitation may cause the HTTP service to crash, making the web management interface and HTTP-dependent functionality temporarily unavailable.
CVSS Score
7.1
EPSS Score
0.004
Published
2026-08-20
Bluetooth HFP Profile protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVSS Score
5.5
EPSS Score
0.001
Published
2026-08-19
Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVSS Score
5.5
EPSS Score
0.001
Published
2026-08-19
BUSMASTER file parser abnormal exit in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVSS Score
3.1
EPSS Score
0.002
Published
2026-08-19
H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVSS Score
4.7
EPSS Score
0.002
Published
2026-08-19
X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVSS Score
7.5
EPSS Score
0.003
Published
2026-08-19
Pcapng file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVSS Score
4.7
EPSS Score
0.001
Published
2026-08-19


Contact Us

Shodan ® - All rights reserved