Known Vulnerabilities for Libsoup by Gnome
Listed below are 10 of the newest known vulnerabilities associated with "Libsoup" by "Gnome".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-15714 json | An out-of-bounds read vulnerability was found in libsoup's multipart processing subsystem. The flaw exists in the soup_multip... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-15713 json | A vulnerability was found in libsoup's HTTP/2 protocol implementation. The library fails to correctly release memory context ... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-15712 json | A heap buffer over-read vulnerability was discovered in libsoup's (versions: libsoup 3.0 to 3.7.0) HTTP/2 connection tracking... | Not Provided | 2026-07-14 | 2026-07-14 |
| CVE-2026-15711 json | A vulnerability was found in libsoup's WebSocket frame parsing implementation. The library fails to validate length rules spe... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-15709 json | A flaw was found in libsoup's WebSocket implementation when using the permessage-deflate extension. The extension's decompres... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-12549 json | Not Provided | 2026-06-22 | 2026-07-08 | |
| CVE-2026-12548 json | A heap out-of-bounds read flaw was found in libsoup. When parsing multipart HTTP messages, an integer type mismatch between t... | Not Provided | 2026-07-21 | 2026-07-23 |
| CVE-2026-12478 json | The fix for CVE-2026-0716 (commit 6ff7ef0, libsoup 3.6.6) placed the integer overflow guard inside the if (masked) block, lea... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-6324 json | A flaw was found in libsoup. A remote attacker could exploit an unsigned to signed conversion error in the `soup_body_input_s... | Not Provided | 2026-05-29 | 2026-05-29 |
| CVE-2026-5119 json | A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are t... | Not Provided | 2026-03-30 | 2026-06-09 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gnome | Libsoup | 2.68.2 | |||
| Application | Gnome | Libsoup | 2.68.1 | |||
| Application | Gnome | Libsoup | 2.68.0 | |||
| Application | Gnome | Libsoup | 2.67.93 | |||
| Application | Gnome | Libsoup | 2.67.92 | |||
| Application | Gnome | Libsoup | 2.67.91 | |||
| Application | Gnome | Libsoup | 2.67.90 | |||
| Application | Gnome | Libsoup | 2.67.3 | |||
| Application | Gnome | Libsoup | 2.67.2 | |||
| Application | Gnome | Libsoup | 2.67.1 | |||
| Application | Gnome | Libsoup | 2.66.4 | |||
| Application | Gnome | Libsoup | 2.66.3 | |||
| Application | Gnome | Libsoup | 2.66.2 | |||
| Application | Gnome | Libsoup | 2.66.1 | |||
| Application | Gnome | Libsoup | 2.66.0 | |||
| Application | Gnome | Libsoup | 2.66 | |||
| Application | Gnome | Libsoup | 2.65.92 | |||
| Application | Gnome | Libsoup | 2.65.91 | |||
| Application | Gnome | Libsoup | 2.65.90 | |||
| Application | Gnome | Libsoup | 2.65.2 |