VYPR

CWE-476

NULL Pointer Dereference

BaseStableLikelihood: Medium

Description

The product dereferences a pointer that it expects to be valid but is NULL.

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (5,659)

page 28 of 283
  • CVE-2026-38344HigAug 28, 2026
    risk 0.49cvss 7.5epss 0.00

    A NULL pointer dereference in the get_min_buffer_size function (/libswscale/slice.c) of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted video file.

  • CVE-2026-30056HigAug 27, 2026
    risk 0.49cvss 7.5epss 0.00

    A NULL pointer dereference in the AMF NGAP Dispatcher component of free5gc v4.0.1 allows attackers to cause a Denial of Service (DoS) via supplying crafted NGAP messages during the initialization of a new RAN connection.

  • CVE-2026-26457HigAug 27, 2026
    risk 0.49cvss 7.5epss 0.00

    ccoap 77f55c4b466e99327c24ace8a2913d3ba7e2ccd5 contains a null pointer dereference vulnerability in the coap_dump_msg() function when processing COAP messages containing options with zero length.

  • CVE-2026-26456HigAug 27, 2026
    risk 0.49cvss 7.5epss 0.00

    A null pointer dereference vulnerability exists in the server-side session management logic of ccoap 77f55c4b466e99327c24ace8a2913d3ba7e2ccd5. The issue is caused by a race condition between the request dispatch thread and the session cleanup thread when accessing shared session…

  • CVE-2026-26453HigAug 27, 2026
    risk 0.49cvss 7.5epss 0.00

    ccoap 77f55c4b466e99327c24ace8a2913d3ba7e2ccd5 contains a null pointer dereference vulnerability in the coap_server_handle_session() function when processing COAP messages containing URI_PATH options with NULL data pointers. When the server searches for a URI_PATH option…

  • CVE-2026-26449HigAug 26, 2026
    risk 0.49cvss 7.5epss 0.00

    In Stomper 5e2741e when a client sends a SEND frame missing the destination header field, the server triggers a null pointer dereference (or access to invalid memory) while processing the frame, causing the process to crash.

  • CVE-2026-71922HigAug 24, 2026
    risk 0.49cvss 7.5epss 0.00

    Multiple DrayTek VigorSwitch models contain a pre-authentication null pointer dereference vulnerability in the setget.cgi interface. The vulnerability is caused by missing validation when the pass field is absent. A remote attacker can trigger this vulnerability via a crafted…

  • CVE-2026-17165HigAug 20, 2026
    risk 0.49cvss 7.5epss 0.00

    IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to a NULL pointer dereference.

  • CVE-2026-8619HigAug 20, 2026
    risk 0.49cvss 7.5epss 0.00

    An unauthenticated denial-of-service vulnerability was identified in TP-Link TL-MR100 v3.2, TL-MR150 v3.2, TL-MR6400 v8.0 and Archer MR600 v2, due to improper handling of exceptional request conditions that may lead to a NULL pointer dereference.  A remote attacker on an…

  • CVE-2026-76928HigAug 19, 2026
    risk 0.49cvss 7.5epss 0.00

    X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

  • CVE-2026-16817HigAug 19, 2026
    risk 0.49cvss 7.5epss 0.00

    IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to a NULL pointer dereference.

  • CVE-2026-65681HigAug 11, 2026
    risk 0.49cvss 7.5epss 0.01

    Null pointer dereference in Windows iSCSI Target Service allows an unauthorized attacker to deny service over a network.

  • CVE-2026-59132HigAug 11, 2026
    risk 0.49cvss 7.5epss 0.02

    Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network.

  • CVE-2026-48438HigAug 11, 2026
    risk 0.49cvss 7.5epss 0.01

    CAI Content Credentials is affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does…

  • CVE-2026-72582HigAug 10, 2026
    risk 0.49cvss 7.5epss 0.00

    A NULL pointer dereference vulnerability in fastschema through v0.15.1 allows an unauthenticated remote attacker to crash the server process with a single HTTP request. The sendOTPEmail function in pkg/auth/local.go dereferences a pointer obtained from an unchecked error path…

  • CVE-2026-50032HigJul 23, 2026
    risk 0.49cvss 7.5epss 0.00

    A NULL pointer dereference in the MMS Write Named Variable List handler, which may allow a network adjacent attacker to crash the server by sending a WriteRequest with an empty listOfData field.

  • CVE-2026-13084HigJul 3, 2026
    risk 0.49cvss 7.5epss 0.01

    A null pointer dereference vulnerability in WatchGuard Fireware OS may allow a remote unauthenticated attacker to create a denial-of-service (DoS) condition by sending specially crafted IKEv2 messages. This vulnerability affects both the Mobile User VPN with IKEv2 and the…

  • CVE-2026-9716HigJun 25, 2026
    risk 0.49cvss 7.5epss 0.00

    CWE-476 NULL Pointer Dereference vulnerability exists that could cause a denial-of-service condition, rendering the device’s HMI and configuration functionality unavailable when malformed requests are received over exposed network interfaces.

  • CVE-2026-48139HigJun 19, 2026
    risk 0.49cvss 7.5epss 0.00

    There is a NULL pointer dereference vulnerability in NI grpc-device in the data moniker service that may allow an attacker to cause a denial of service by triggering a crash.  Successful exploitation requires an attacker to provide an unknown value to the data moniker service.…

  • CVE-2026-0156HigJun 16, 2026
    risk 0.49cvss 7.5epss 0.00

    In checkSsrcCollisionOnRcv of RtpSession.cpp, there is a possible memory safety issue due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.