Cavid
6 credited records · 6 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
26Monitor | CVE-2026-15714No exploit | Libsoup: soupmultipartinputstream: libsoup: out-of-bounds read in soup_multipart_input_stream_read_headers via an oversized multipart boundary stringred hat · red hat enterprise linux 10 · CWE-125 | Medium6.5 | — | 0.7% | Jul 14, 2026 |
23Monitor | CVE-2026-15713No exploit | Libsoup: soupcache: libsoup: http/2 frame window exhaustion remote denial of service via memory leakred hat · red hat enterprise linux 10 · CWE-772 | Medium5.9 | — | 0.6% | Jul 14, 2026 |
23Monitor | CVE-2026-15712No exploit | Soupclientmessageiohttp2: libsoup3: libsoup: http/2 goaway frame parsing heap buffer over-read via invalid nul-termination assumptionred hat · red hat enterprise linux 10 · CWE-125 | Medium5.9 | — | 0.7% | Jul 14, 2026 |
21Monitor | CVE-2026-2708No exploit | Libsoup: libsoup: http request smuggling via duplicate content-length headersgnome · libsoup · CWE-444 | Medium5.3 | — | 0.4% | Apr 23, 2026 |
30Monitor | CVE-2026-33260No exploit | Insufficient input validation of internal webserverpowerdns · authoritative · CWE-770 | High7.5 | — | 1.1% | Apr 22, 2026 |
29Monitor | CVE-2026-3099No exploit | Libsoup: libsoup: authentication bypass via digest authentication replay attackgnome · libsoup · CWE-323 | High7.3 | — | 0.5% | Mar 12, 2026 |
- CVE-2026-1571426Monitor
Libsoup: soupmultipartinputstream: libsoup: out-of-bounds read in soup_multipart_input_stream_read_headers via an oversized multipart boundary string
MediumCVSS 6.5No exploitEPSS 1%red hat · red hat enterprise linux 10Jul 14, 2026
- CVE-2026-1571323Monitor
Libsoup: soupcache: libsoup: http/2 frame window exhaustion remote denial of service via memory leak
MediumCVSS 5.9No exploitEPSS 1%red hat · red hat enterprise linux 10Jul 14, 2026
- CVE-2026-1571223Monitor
Soupclientmessageiohttp2: libsoup3: libsoup: http/2 goaway frame parsing heap buffer over-read via invalid nul-termination assumption
MediumCVSS 5.9No exploitEPSS 1%red hat · red hat enterprise linux 10Jul 14, 2026
- CVE-2026-270821Monitor
Libsoup: libsoup: http request smuggling via duplicate content-length headers
MediumCVSS 5.3No exploitEPSS 0%gnome · libsoupApr 23, 2026
- CVE-2026-3326030Monitor
Insufficient input validation of internal webserver
HighCVSS 7.5No exploitEPSS 1%powerdns · authoritativeApr 22, 2026
- CVE-2026-309929Monitor
Libsoup: libsoup: authentication bypass via digest authentication replay attack
HighCVSS 7.3No exploitEPSS 0%gnome · libsoupMar 12, 2026