Known Vulnerabilities for Openssl by Openssl Project
Listed below are 2 of the newest known vulnerabilities associated with "Openssl" by "Openssl Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-59847 json | A flaw was found in libssh. Incorrect AES-GCM finalization checks in builds using the OpenSSL backend can effectively remove ... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2026-58102 json | Crypt::OpenSSL::X509 versions before 2.1.3 for Perl allow a heap out-of-bounds read via a long certificate extension OID in h... | Not Provided | 2026-07-13 | 2026-07-14 |
| CVE-2026-58101 json | Crypt::OpenSSL::X509 versions before 2.1.3 for Perl allow denial of service via NULL pointer dereference. X509V3_EXT_d2i(ext... | Not Provided | 2026-07-13 | 2026-07-14 |
| CVE-2026-55964 json | Chain intermediate CA:TRUE without keyCertSign accepted as a signing CA. Intermediate CA certificates are required to have th... | Not Provided | 2026-06-25 | 2026-06-26 |
| CVE-2026-55961 json | wolfSSL_PKCS7_verify() returning success for a degenerate (certs-only) PKCS#7 object that contains no signer. Such an object ... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-48697 json | FastNetMon Community Edition through 1.2.9 does not verify TLS certificates on outbound HTTPS connections. The execute_web_re... | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-45784 json | rust-openssl provides OpenSSL bindings for the Rust programming language. From 0.10.50 until 0.10.80, CipherCtxRef::cipher_up... | Not Provided | 2026-07-17 | 2026-07-20 |
| CVE-2026-45447 json | Issue summary: A specially crafted PKCS#7 or S/MIME signed message could trigger a use-after-free during PKCS#7 signature ver... | Not Provided | 2026-06-09 | 2026-07-20 |
| CVE-2026-45446 json | Issue summary: The implementations of AES-SIV (RFC 5297) and AES-GCM-SIV (RFC 8452) mishandle the authentication of AAD (Addi... | Not Provided | 2026-06-09 | 2026-06-10 |
| CVE-2026-45445 json | Issue summary: When an application drives an AES-OCB context through the public EVP_Cipher() one-shot interface, the applicat... | Not Provided | 2026-06-09 | 2026-06-10 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Openssl Project | Openssl | 0.9.9 | |||
| Application | Openssl Project | Openssl | 0.9.49 | |||
| Application | Openssl Project | Openssl | 0.9.48 | |||
| Application | Openssl Project | Openssl | 0.9.47 | |||
| Application | Openssl Project | Openssl | 0.9.46 | |||
| Application | Openssl Project | Openssl | 0.9.45 | |||
| Application | Openssl Project | Openssl | 0.9.44 | |||
| Application | Openssl Project | Openssl | 0.9.43 | |||
| Application | Openssl Project | Openssl | 0.9.42 | |||
| Application | Openssl Project | Openssl | 0.9.41 | |||
| Application | Openssl Project | Openssl | 0.9.40 | |||
| Application | Openssl Project | Openssl | 0.9.39 | |||
| Application | Openssl Project | Openssl | 0.9.38 | |||
| Application | Openssl Project | Openssl | 0.9.37 | |||
| Application | Openssl Project | Openssl | 0.9.36 | |||
| Application | Openssl Project | Openssl | 0.9.35 | |||
| Application | Openssl Project | Openssl | 0.9.33 | |||
| Application | Openssl Project | Openssl | 0.9.32 | |||
| Application | Openssl Project | Openssl | 0.9.31 | |||
| Application | Openssl Project | Openssl | 0.9.30 |