Monitor vulnerabilities that affect your stack. Sign up free to get alerts when software you use is affected.

CVE Vulnerabilities - 15 March 2026

RSS

115 vulnerabilities published on 15 March 2026

Severity:
httplib Leaks Internal Server Errors to Clients
OESA-2026-1555
A security update is available for the httplib library to prevent internal server errors from being sent to clients. This could expose sensitive information. Update to version 0.35.0 or later to fix t...
Older Versions of cpp-httplib Library Leak Sensitive Server Information
OESA-2026-1554
Older versions of the cpp-httplib library can leak sensitive server information to anyone who makes a request. This happens when the server encounters an error and doesn't have a custom error handler ...
httplib Exposes Internal Error Messages to Clients
OESA-2026-1553
The httplib library may leak internal error messages to anyone who makes a request to your server. This can happen if you're using a recent version of the library but haven't set up a custom exception...
cpp-httplib Leaks Internal Error Messages to Unauthenticated Clients
OESA-2026-1552
A security update is available for cpp-httplib, a library used for creating HTTP/HTTPS servers. Until version 0.35.0, error messages were being sent to clients without proper authentication, potential...
Squid Caching Proxy: Remote Code Execution Risk
OESA-2026-1551
If you're using Squid versions 6.3 and below, a hacker could potentially inject malicious code into your system through the proxy. This can happen if Squid is configured to process URNs. To fix this, ...
Wireshark Crashes When Analyzing Malicious Network Packets or Files
OESA-2026-1550
Wireshark, a popular network protocol analyzer, has a security issue that can cause it to crash when it tries to analyze certain types of network packets or files. This can happen if an attacker sends...
Wireshark Network Analyzer Crashes from Malicious Data
OESA-2026-1549
Wireshark, a widely used network protocol analyzer, crashes when processing certain types of network data, allowing an attacker to disrupt its operation. This can happen when Wireshark is analyzing ne...
Wireshark Can Crash or Hang When Analyzing Malicious Network Traffic
OESA-2026-1548
Popular network protocol analyzer Wireshark has multiple security issues that can cause the program to crash or hang if it encounters malicious network traffic. This can happen when Wireshark tries to...
Wireshark Crashes When Analyzing Malicious Network Packets
OESA-2026-1547
Wireshark, a tool used to analyze network traffic, has security issues that can cause it to crash when processing certain types of malicious network packets. This can prevent the tool from functioning...
Wireshark Security Update: Denial of Service Risk
OESA-2026-1546
Wireshark, a network traffic analysis tool, has received security updates to prevent denial of service attacks. These attacks could freeze or crash the application, disrupting network analysis. To ens...
Wireshark Crashes When Analyzing Malicious Network Packets
OESA-2026-1545
Wireshark, a popular network analysis tool, has security issues that can cause it to crash or freeze if it analyzes certain types of malicious network packets. This can be exploited by attackers to de...
BusyBox Security Update: Malicious Archives Can Overwrite System Files
OESA-2026-1544
BusyBox, a Linux utility suite, contains a security flaw that allows an attacker to create malicious archives that can overwrite sensitive system files. This can lead to unauthorized code execution or...
Assimp Library: Remote Code Execution Risk from Malformed File
OESA-2026-1543
The Assimp library, used to load 3D models, has been updated to fix two security issues. One allows an attacker to read sensitive data from a 3D model, while the other could potentially allow them to ...
Ceph Storage System Crashes from Malicious File Request
OESA-2026-1542
Ceph, an open-source storage system, can crash if a specific type of file is requested. This could allow an attacker to make the system stop working, causing data loss or disruption. No fixed version ...
Ceph Storage Platform: Crash Vulnerability via Invalid Object Upload
OESA-2026-1541
Ceph's storage platform can be made to crash if an attacker uploads an object with a specific, malformed request. This could allow an attacker to disrupt the service, making it unavailable to users. U...