Where
-Infinity
0

Gnome libsoupLibsoup: libsoup: proxy credentials leak to destination server via proxy-authorization header in connect tunnels

Risk 37
Severity
6.5
First published (updated )

Gnome libsoupLibsoup: libsoup: heap buffer over-read via integer underflow in soup_filter_input_stream_read_until()

Risk 40
Severity
6.5
First published (updated )

Gnome libsoupAfter a CONNECT tunnel is established through an HTTP proxy, libsoup incorrectly attaches the Proxy-…

Risk 19
Severity
4
First published (updated )

Gnome libsoupAn unsigned integer underflow in soup_filter_input_stream_read_until() in libsoup/soup-filter-input-…

Risk 19
Severity
4
First published (updated )

Gnome libsoupThe chunked transfer encoding parser in libsoup uses strtoul(metabuf, NULL, 16) to parse chunk sizes…

Risk 5
Severity
1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Gnome libsoupLibsoup: soupmultipartinputstream: libsoup: out-of-bounds read in soup_multipart_input_stream_read_headers via an oversized multipart boundary string

Risk 40
Severity
6.5
First published (updated )

Gnome libsoupLibsoup: soupwebsocketconnection: libsoup: websocket remote denial of service via oversized control frame protocol violation

Risk 43
Severity
7.5
First published (updated )

redhat Enterprise LinuxLibsoup: incomplete fix for cve-2026-2443: range suffix overflow in libsoup soupserver

Risk 32
Severity
4.8
First published (updated )

Gnome libsouphttps://gitlab.gnome.org/GNOME/libsoup/-/work_items/516 https://redhat.atlassian.net/browse/PSIRTSUP…

Risk 19
Severity
4
First published (updated )

Gnome libsoupLibsoup: heap out-of-bounds read in libsoup due to integer truncation

Risk 28
Severity
4.2
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Gnome libsoupLibsoup: information disclosure in libsoup via soupauthmanager proxy credential leak on proxy switch

Risk 17
Severity
3.4
First published (updated )

Gnome libsoupLibsoup: incomplete fix for cve-2026-0716: out-of-bounds read in libsoup websocket frame processing (unmasked path)

Risk 32
Severity
4.8
First published (updated )

Gnome libsoupLibsoup: libsoup: http request smuggling via unsigned to signed conversion error

Risk 32
Severity
4.8
First published (updated )

Gnome libsoupHTTP Request Smuggling on libsoup through libsoup/http1/soup-body-input-stream.c:soup_body_input_st…

Risk 19
Severity
4
First published (updated )

redhat Enterprise LinuxLibsoup: libsoup: information disclosure via cleartext transmission of cookies during https tunnel establishment

Risk 38
Severity
8.2
EPSS
0.01%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Gnome libsoupCleartext Transmission of Sensitive Information has been reported in libsoup’s HTTP CONNECT handling…

Risk 19
Severity
4
First published (updated )

redhat Enterprise LinuxLibsoup: libsoup: denial of service via use-after-free in http/2 server

Risk 31
Severity
7.5
EPSS
1.17%
First published (updated )

redhat Enterprise LinuxLibsoup: libsoup: http header injection and response splitting via crlf injection in content-type header

Risk 28
Severity
6.5
EPSS
0.03%
First published (updated )

redhat Enterprise LinuxLibsoup: libsoup: header and http request injection via crlf injection

Risk 28
Severity
6.5
EPSS
0.03%
First published (updated )

redhat Enterprise LinuxLibsoup: libsoup: http smuggling and server-side request forgery via malformed hostnames

Risk 24
Severity
5.5
EPSS
0.10%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat Enterprise LinuxLibsoup: libsoup: denial of service via use-after-free in soupserver during tls handshake

Risk 54
Severity
8.2
First published (updated )

Gnome libsoupUse After Free

Risk 19
Severity
4
First published (updated )

redhat Enterprise LinuxLibsoup: libsoup: authentication bypass via digest authentication replay attack

Risk 36
Severity
7.3
EPSS
0.11%
First published (updated )

redhat Enterprise LinuxLibsoup: libsoup: http request smuggling via duplicate content-length headers

Risk 27
Severity
5.3
First published (updated )

redhat Enterprise LinuxLibsoup: out-of-bounds read in libsoup handle_partial_get() leading to heap information disclosure

Risk 19
Severity
5.3
EPSS
0.04%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Gnome libsoupLibsoup: libsoup: buffer overread due to integer underflow when handling zero-length resources

Risk 66
Severity
9.1
First published (updated )

Gnome libsoupInteger underflow in CVE-2025-32052 fix when resource_length=0 The fix for CVE-2025-32052 (commit a…

Risk 19
Severity
4
First published (updated )

redhat Enterprise LinuxLibsoup: libsoup: http request smuggling via malformed chunk headers

Risk 40
Severity
6.5
First published (updated )

redhat Enterprise LinuxLibsoup: libsoup: credential leakage via http redirects

Risk 30
Severity
5.8
First published (updated )

redhat Enterprise LinuxLibsoup: libsoup: http header injection or response splitting via crlf injection in content-disposition header

Risk 30
Severity
5.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203