Known Vulnerabilities for Zstd-jni by Luben
Listed below are 10 of the newest known vulnerabilities associated with "Zstd-jni" by "Luben".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-89046 json | zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-89045 json | zstd-jni versions 1.4.8-4 through 1.5.7-13 fail to validate negative length parameters in ZstdInputStreamNoFinalizer.read(), ... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-87877 json | zstd-jni versions before 1.5.7-14 fail to validate closed state in setDict, setLongMax, setLevel and setRefMultipleDDicts met... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-87825 json | zstd-jni before 1.5.7-14 contains a use-after-free vulnerability where streams and contexts hold a dictionary's shared lock o... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-87824 json | zstd-jni before 1.5.7-14 fails to validate the samples buffer capacity in Zstd.trainFromBufferDirect, allowing attackers to r... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-87823 json | zstd-jni before 1.5.7-14 performs 32-bit signed bounds checks on three direct-ByteBuffer frame-size native methods, allowing ... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-87795 json | zstd-jni versions before 1.5.7-14 fail to validate offset and length parameters in the ZstdDictCompress constructor, allowing... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-84382 json | HTTPX2 is a next generation HTTP client for Python. Prior to 2.12.0, the HTTPX2 content decoders in src/httpx2/httpx2/_decode... | Not Provided | 2026-09-02 | 2026-09-03 |
| CVE-2026-64031 json | In the Linux kernel, the following vulnerability has been resolved: erofs: fix managed cache race for unaligned extents Aft... | Not Provided | 2026-07-19 | 2026-07-20 |
| CVE-2026-48044 json | Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.23.0 until 1.35.11, 1.36.7, 1.3... | Not Provided | 2026-06-26 | 2026-06-26 |