Known Vulnerabilities for products from Nsa
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Nsa".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-52759 json | Ghidra before 12.1.1 contains an uncontrolled memory allocation vulnerability in the Mach-O binary parser that allows attacke... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-52758 json | Ghidra before 12.1 contains a SQL injection vulnerability in BSim filter types that concatenate user-supplied values directly... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-52757 json | Ghidra before 12.1 contains a heap-use-after-free vulnerability in the decompiler's HighVariable::merge() function during the... | Not Provided | 2026-06-10 | 2026-06-12 |
| CVE-2026-52756 json | Ghidra before 12.2 contains an unauthenticated path traversal vulnerability in the IsfServer that accepts TCP connections and... | Not Provided | 2026-06-10 | 2026-06-12 |
| CVE-2026-52755 json | Ghidra before 12.0.4 contains a path traversal vulnerability in the theme import functionality that allows attackers to write... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-52754 json | Ghidra before 12.1 contains an authentication bypass vulnerability in PKIAuthenticationModule.authenticate() that allows any ... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-52753 json | Ghidra before 12.0.3 contains an out-of-memory vulnerability in the rust_demangle function that allocates unbounded output bu... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-52752 json | Ghidra before 12.0.2 contains a path traversal vulnerability in the extension installer that fails to validate ZIP entry name... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-52751 json | Ghidra before 12.1 contains an unsafe deserialization vulnerability in client-side Shared-Project RMI connection code that al... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-49498 json | Ghidra 11.0 before 12.1 contains a SQL injection vulnerability in the changePassword() method of PostgresFunctionDatabase tha... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-49497 json | Ghidra before 12.1 contains a path traversal vulnerability in SameDirDebugInfoProvider that fails to validate filenames from ... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-49496 json | Ghidra before 12.1 contains a heap-use-after-free vulnerability in SleighBuilder::generatePointerAdd caused by iterator inval... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-49495 json | Ghidra 10.2 before 12.1 contains an uncontrolled resource consumption vulnerability in ExportTrie.parseTrie() that lacks cycl... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-35583 json | Emissary is a P2P based data-driven workflow engine. Prior to 8.39.0, the configuration API endpoint (/api/configuration/{nam... | Not Provided | 2026-04-07 | 2026-04-16 |
| CVE-2026-35582 json | Emissary is a P2P based data-driven workflow engine. In versions 8.42.0 and below, Executrix.getCommand() is vulnerable to OS... | Not Provided | 2026-04-18 | 2026-04-24 |
| CVE-2026-35581 json | Emissary is a P2P based data-driven workflow engine. Prior to 8.39.0, the Executrix utility class constructed shell commands ... | Not Provided | 2026-04-07 | 2026-04-16 |
| CVE-2026-35580 json | Emissary is a P2P based data-driven workflow engine. Prior to 8.39.0, GitHub Actions workflow files contained shell injection... | Not Provided | 2026-04-07 | 2026-04-16 |
| CVE-2026-35571 json | Emissary is a P2P based data-driven workflow engine. Prior to 8.39.0, Mustache navigation templates interpolated configuratio... | Not Provided | 2026-04-07 | 2026-04-27 |
| CVE-2024-58350 json | Ghidra before 11.2 contains a use after free vulnerability in the Sleigh backend caused by undefined static initialization or... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2023-22671 json | Ghidra/RuntimeScripts/Linux/support/launch.sh in NSA Ghidra through 10.2.2 passes user-provided input into eval, leading to c... | 9.8 - CRITICAL | 2023-01-06 | 2023-01-12 |
Known software with vulnerabilities from Nsa
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Nsa | Ghidra | 9.0 |