Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2249663
AlmaLinux
6006
Alpaquita
16203
Alpine
4656
Android
3706
Azure Linux
18227
BellSoft Hardened Containers
777
Bitnami
9542
Chainguard
1051987
CleanStart
5486
CRAN
14
crates.io
2772
Debian
69546
Echo
8107
GHC
3
GIT
109616
GitHub Actions
55
Go
9359
Hackage
33
Hex
367
Julia
1713
Linux
30182
Mageia
6240
Maven
7061
MinimOS
149324
npm
229353
NuGet
1874
opam
29
openEuler
8900
openSUSE
14673
OSS-Fuzz
4020
Packagist
7104
Pub
11
PyPI
25520
Red Hat
23596
Rocky Linux
4372
Root
19746
RubyGems
5369
SUSE
23520
SwiftURL
61
TuxCare
10076
Ubuntu
66142
VSCode
21
Wolfi
294294
ID
Packages
Summary
Published
arrow_upward
Attributes
CVE-2026-73511
github.com/envoyproxy/envoy
Envoy: Potential path-matching/authentication bypass when using Envoy in combination with a backend stripping per-segment path (matrix) parameters (e.g. Apache Tomcat)
21 Sep
Fix available
Severity - 5.3 (Medium)
CVE-2026-73553
github.com/envoyproxy/envoy
Envoy: RBAC Authorization Bypass via Path Parameters
21 Sep
Fix available
Severity - 7.5 (High)
CVE-2026-73551
github.com/envoyproxy/envoy
Envoy: Path normalization does not handle dot and dotdot segments with parameters
21 Sep
Fix available
Severity - 5.3 (Medium)
CVE-2026-73546
github.com/envoyproxy/envoy
Envoy: Stored XSS in Admin Stats Interface (/stats?format=html)
21 Sep
Fix available
Severity - 7.4 (High)
CVE-2026-73512
github.com/envoyproxy/envoy
Envoy: use-after-free in QUIC on internal redirects
21 Sep
Fix available
Severity - 7.5 (High)
CVE-2026-73550
github.com/envoyproxy/envoy
Envoy: HTTP/2 Discarded Host Header 200 GB Header-Copy OOM in Envoy
21 Sep
Fix available
Severity - 7.5 (High)
CVE-2026-73547
github.com/envoyproxy/envoy
Envoy ext_authz: request `:path` pseudoheader dereferenced w/o null check
21 Sep
Fix available
Severity - 7.5 (High)
CVE-2026-48521
github.com/envoyproxy/envoy
Envoy: HTTP/3 connection pool selection null-derefs in ProdClusterManagerFactory::allocateConnPool when transport_socket_options is null
21 Sep
Fix available
Severity - 5.9 (Medium)
CVE-2026-73549
github.com/envoyproxy/envoy
Envoy - Incomplete fix for CVE-2026-26310: copyInternetAddressAndPort crashes on scoped IPv6 addresses in ORIGINAL_DST clusters
21 Sep
Fix available
Severity - 5.3 (Medium)
CVE-2026-73513
github.com/envoyproxy/envoy
Envoy: oghttp2 upstream trailers incorrect handling
21 Sep
Fix available
Severity - 7.5 (High)
CVE-2026-73552
github.com/envoyproxy/envoy
Envoy: HTTP RBAC safe_regex can fail open on RFC-valid obs-text header values
21 Sep
Fix available
Severity - 7.5 (High)
CVE-2026-73548
github.com/envoyproxy/envoy
Envoy: Cross-user response poisoning via a generic (non-WebSocket) HTTP upgrade on Envoy's shared backend pool
21 Sep
Fix available
Severity - 7.5 (High)
CVE-2026-50572
github.com/envoyproxy/envoy
Envoy: ext_authz - RawHttpClientImpl onSuccess 0x0 segfault
21 Sep
Fix available
Severity - 5.9 (Medium)
CVE-2026-53714
github.com/envoyproxy/gateway
Envoy Gateway: xDS Control Plane Information Disclosure when Envoy Gateway operates in GatewayNamespaceMode
14 Sep
Fix available
Severity - 7.4 (High)
CVE-2026-53716
github.com/envoyproxy/gateway
Envoy Gateway: Wasm HTTP fetch decompresses gzip without output-size limit
14 Sep
Fix available
Severity - 6.5 (Medium)
CVE-2026-53715
github.com/envoyproxy/gateway
Envoy Gateway: Wasm cache ServeHTTP reads mappingPath2Cache without lock
14 Sep
Fix available
Severity - 5.3 (Medium)
Load more...
Vulnerability Database - OSV