- Products & ServicesProducts & Services
- SolutionsSolutions
- PricingPricing
- CompanyCompany
- ResourcesResources
en
en
openssl command-line program, the libcrypto cryptographic library, and the libssl library for SSL/TLS communications, supporting developers and organizations that build secure networked applications and manage certificates and keys.As of 09/13/2026, OpenSSL recorded 11 security vulnerabilities in the last 90 days across 1 products, including 10 rated High or above and 0 known exploited vulnerabilities (KEV) that should be prioritized for immediate remediation.
Over the last 90 days, OpenSSL had the most security vulnerabilities in the OpenSSL ecosystem, with 11 vulnerabilities—approximately 100% of the provider's total vulnerabilities during this period.
| Vulnerability | Exploitation status | Fix | Affected product | Published | Severity |
|---|---|---|---|---|---|
CVE-2026-75803AEAD Forgeries with Empty Ciphertext When Using EVP_Cipher() | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published08/25/2026 | SeverityCritical |
CVE-2026-63076Invalid Pointer Dereference in CMP Server via Crafted protectionAlg | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published08/25/2026 | SeverityHigh |
CVE-2026-63075QUIC ACK-only Packet Retention Can Cause Memory Exhaustion | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published08/25/2026 | SeverityHigh |
CVE-2026-63074CMP Indefinite Cache Growth of ExtraCerts | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published08/25/2026 | SeverityMedium |
CVE-2026-63073Untrusted Sender DN Used as Format String in CMP Response Validation | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published08/25/2026 | SeverityCritical |
CVE-2026-63072Heap Buffer Overflow in CMS Key Unwrapping | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published08/25/2026 | SeverityHigh |
CVE-2026-54874Excessive Memory Use Buffering DTLS Records for a Future Epoch | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published08/25/2026 | SeverityHigh |
CVE-2026-18798QUIC Server May Trigger Double Free When Processing INITIAL Packet | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published08/25/2026 | SeverityHigh |
CVE-2026-14457RPK Server Signature Algorithm Selection Can Dereference a Missing Certificate | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published08/25/2026 | SeverityHigh |
CVE-2026-14456Unbounded Memory Growth in QUIC Server Incoming Channel Queue | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published08/13/2026 | SeverityHigh |
CVE-2026-54876Client-Side Memory Leak in OCSP Response Checking | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published08/05/2026 | SeverityHigh |
CVE-2026-45447Heap Use-After-Free in the PKCS7_verify() Function | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityHigh |
CVE-2026-45446Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityMedium |
CVE-2026-45445AES-OCB IV Ignored on EVP_Cipher() Path | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityHigh |
CVE-2026-42771Possible Out of Bounds Read in X509_VERIFY_PARAM_set1_email() | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityMedium |
CVE-2026-42770FFC-DH Peer Validation Uses Attacker-Supplied q | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityLow |
CVE-2026-42769Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityMedium |
CVE-2026-42768Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityLow |
CVE-2026-42767NULL Pointer Dereference in CRMF EncryptedValue Decryption | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityMedium |
CVE-2026-42766Possible NULL Dereference in Password-Based CMS Decryption | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityMedium |
CVE-2026-42765NULL Dereference in Certificate Verification with OCSP Checking | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityHigh |
CVE-2026-42764NULL Pointer Dereference in QUIC Server Initial Packet Handling | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityHigh |
CVE-2026-35188Double-free When Checking OCSP Stapled Response | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityMedium |
CVE-2026-34183Unbounded Memory Growth in the QUIC PATH_CHALLENGE Handler | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityHigh |
CVE-2026-34182CMS AuthEnvelopedData Processing May Accept Forged Messages | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityCritical |
CVE-2026-34181PKCS#12 Files with PBMAC1 Are Accepted with Short HMAC Keys | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityHigh |
CVE-2026-34180Heap Buffer Over-read in ASN.1 Content Parsing | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityHigh |
CVE-2026-9076Out-of-Bounds Read in CMS Password-Based Decryption | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityHigh |
CVE-2026-7383Possible Heap Buffer Overflow in ASN.1 Multibyte String Conversion | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/09/2026 | SeverityHigh |
CVE-2026-31790Incorrect Failure Handling in RSA KEM RSASVE Encapsulation | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published04/07/2026 | SeverityHigh |
CVE-2026-31789Heap Buffer Overflow in Hexadecimal Conversion | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published04/07/2026 | SeverityMedium |
CVE-2026-28390Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published04/07/2026 | SeverityHigh |
CVE-2026-28389Possible NULL Dereference When Processing CMS KeyAgreeRecipientInfo | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published04/07/2026 | SeverityHigh |
CVE-2026-28388NULL Pointer Dereference When Processing a Delta CRL | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published04/07/2026 | SeverityHigh |
CVE-2026-28387Potential Use-after-free in DANE Client Code | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published04/07/2026 | SeverityHigh |
CVE-2026-28386Out-of-bounds Read in AES-CFB-128 on X86-64 with AVX-512 Support | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published04/07/2026 | SeverityCritical |
CVE-2026-2673OpenSSL TLS 1.3 server may choose unexpected key agreement group | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published03/13/2026 | SeverityMedium |
CVE-2026-22796ASN1_TYPE Type Confusion in the PKCS7_digest_from_attributes() function | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/27/2026 | SeverityMedium |
CVE-2026-22795Missing ASN1_TYPE validation in PKCS#12 parsing | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/27/2026 | SeverityMedium |
CVE-2025-69421NULL Pointer Dereference in PKCS12_item_decrypt_d2i_ex function | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/27/2026 | SeverityHigh |
CVE-2025-69420Missing ASN1_TYPE validation in TS_RESP_verify_response() function | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/27/2026 | SeverityHigh |
CVE-2025-69419Out of bounds write in PKCS12_get_friendlyname() UTF-8 conversion | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/27/2026 | SeverityHigh |
CVE-2025-69418Unauthenticated/unencrypted trailing bytes with low-level OCB function calls | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/27/2026 | SeverityMedium |
CVE-2025-68160Heap out-of-bounds write in BIO_f_linebuffer on short writes | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/27/2026 | SeverityMedium |
CVE-2025-66199TLS 1.3 CompressedCertificate excessive memory allocation | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/27/2026 | SeverityMedium |
CVE-2025-15469'openssl dgst' one-shot codepath silently truncates inputs >16MB | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/27/2026 | SeverityMedium |
CVE-2025-15468NULL dereference in SSL_CIPHER_find() function on unknown cipher ID | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/27/2026 | SeverityMedium |
CVE-2025-15467Stack buffer overflow in CMS (Auth)EnvelopedData parsing | Exploitation statusPublic exploit | FixYes | Affected productOpenSSL | Published01/27/2026 | SeverityCritical |
CVE-2025-11187Improper validation of PBMAC1 parameters in PKCS#12 MAC verification | Exploitation statusPublic exploit | FixYes | Affected productOpenSSL | Published01/27/2026 | SeverityMedium |
CVE-2025-9232Out-of-bounds read in HTTP client no_proxy handling | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published09/30/2025 | SeverityMedium |
CVE-2025-9231Timing side-channel in SM2 algorithm on 64 bit ARM | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published09/30/2025 | SeverityMedium |
CVE-2025-9230Out-of-bounds read & write in RFC 3211 KEK Unwrap | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published09/30/2025 | SeverityHigh |
CVE-2025-4575The x509 application adds trusted use instead of rejected use | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published05/22/2025 | SeverityMedium |
CVE-2024-12797RFC7250 handshakes with unauthenticated servers don't abort as expected | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published02/11/2025 | SeverityMedium |
CVE-2024-13176Timing side-channel in ECDSA signature computation | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/20/2025 | SeverityMedium |
CVE-2024-4741Use After Free with SSL_free_buffers | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published11/13/2024 | SeverityHigh |
CVE-2024-9143Low-level invalid GF(2^m) parameters lead to OOB memory access | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published10/16/2024 | SeverityMedium |
CVE-2024-6119Possible denial of service in X.509 name checks | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published09/03/2024 | SeverityHigh |
CVE-2024-5535SSL_select_next_proto buffer overread | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published06/27/2024 | SeverityCritical |
CVE-2024-4603Excessive time spent checking DSA keys and parameters | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published05/16/2024 | SeverityMedium |
CVE-2023-6237Excessive time spent checking invalid RSA public keys | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published04/25/2024 | SeverityMedium |
CVE-2024-2511Unbounded memory growth with session handling in TLSv1.3 | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published04/08/2024 | SeverityMedium |
CVE-2024-0727PKCS12 Decoding crashes | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/26/2024 | SeverityMedium |
CVE-2023-6129POLY1305 MAC implementation corrupts vector registers on PowerPC | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/09/2024 | SeverityMedium |
CVE-2023-5678Excessive time spent in DH check / generation with large Q parameter value | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published11/06/2023 | SeverityMedium |
CVE-2023-5363Incorrect cipher key & IV length processing | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published10/24/2023 | SeverityHigh |
CVE-2023-4807POLY1305 MAC implementation corrupts XMM registers on Windows | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published09/08/2023 | SeverityHigh |
CVE-2023-3817Excessive time spent checking DH q parameter value | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published07/31/2023 | SeverityMedium |
CVE-2023-3446Excessive time spent checking DH keys and parameters | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published07/19/2023 | SeverityMedium |
CVE-2023-2975AES-SIV implementation ignores empty associated data entries | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published07/14/2023 | SeverityMedium |
CVE-2023-2650Possible DoS translating ASN.1 object identifiers | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published05/30/2023 | SeverityMedium |
CVE-2023-1255Input buffer over-read in AES-XTS implementation on 64 bit ARM | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published04/20/2023 | SeverityMedium |
CVE-2023-0466Certificate policy check not enabled | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published03/28/2023 | SeverityMedium |
CVE-2023-0465Invalid certificate policies in leaf certificates are silently ignored | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published03/28/2023 | SeverityMedium |
CVE-2023-0464Excessive Resource Usage Verifying X.509 Policy Constraints | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published03/22/2023 | SeverityHigh |
CVE-2022-4203X.509 Name Constraints Read Buffer Overflow | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published02/24/2023 | SeverityMedium |
CVE-2022-4304Timing Oracle in RSA Decryption | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published02/08/2023 | SeverityMedium |
CVE-2022-4450Double free after calling PEM_read_bio_ex | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published02/08/2023 | SeverityHigh |
CVE-2023-0215Use-after-free following BIO_new_NDEF | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published02/08/2023 | SeverityHigh |
CVE-2023-0216Invalid pointer dereference in d2i_PKCS7 functions | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published02/08/2023 | SeverityHigh |
CVE-2023-0217NULL dereference validating DSA public key | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published02/08/2023 | SeverityHigh |
CVE-2023-0286X.400 address type confusion in X.509 GeneralName | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published02/08/2023 | SeverityHigh |
CVE-2023-0401NULL dereference during PKCS7 data verification | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published02/08/2023 | SeverityHigh |
CVE-2022-3996X.509 Policy Constraints Double Locking | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published12/13/2022 | SeverityHigh |
CVE-2022-3786X.509 Email Address Variable Length Buffer Overflow | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published11/01/2022 | SeverityHigh |
CVE-2022-3602X.509 Email Address 4-byte Buffer Overflow | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published11/01/2022 | SeverityHigh |
CVE-2022-3358Using a Custom Cipher with NID_undef may lead to NULL encryption | Exploitation statusNot confirmed | FixYes | Affected productOpenSSL | Published10/11/2022 | SeverityUnknown |
CVE-2022-2097AES OCB fails to encrypt some bytes | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published07/05/2022 | SeverityUnknown |
CVE-2022-2274RSA implementation bug in AVX512IFMA instructions | Exploitation statusNot confirmed | FixNot confirmed | Affected productOpenSSL | Published07/01/2022 | SeverityUnknown |
CVE-2022-2068The c_rehash script allows command injection | Exploitation statusPublic exploit | FixYes | Affected productOpenSSL | Published06/21/2022 | SeverityCritical |
CVE-2022-1473Resource leakage when decoding certificates and keys | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published05/03/2022 | SeverityHigh |
CVE-2022-1434Incorrect MAC key used in the RC4-MD5 ciphersuite | Exploitation statusNot confirmed | FixYes | Affected productOpenSSL | Published05/03/2022 | SeverityUnknown |
CVE-2022-1343OCSP_basic_verify may incorrectly verify the response signing certificate | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published05/03/2022 | SeverityMedium |
CVE-2022-1292The c_rehash script allows command injection | Exploitation statusPublic exploit | FixYes | Affected productOpenSSL | Published05/03/2022 | SeverityCritical |
CVE-2022-0778Infinite loop in BN_mod_sqrt() reachable when parsing certificates | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published03/15/2022 | SeverityHigh |
CVE-2021-4160BN_mod_exp may produce incorrect results on MIPS | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published01/28/2022 | SeverityUnknown |
CVE-2021-4044Invalid handling of X509_verify_cert() internal errors in libssl | Exploitation statusNot confirmed | FixYes | Affected productOpenSSL | Published12/14/2021 | SeverityUnknown |
CVE-2021-3712Read buffer overruns processing ASN.1 strings | Exploitation statusNot known exploited | FixYes | Affected productOpenSSL | Published08/24/2021 | SeverityHigh |
CVE-2021-3711SM2 Decryption Buffer Overflow | Exploitation statusNot confirmed | FixYes | Affected productOpenSSL | Published08/24/2021 | SeverityUnknown |
CVE-2021-3450CA certificate check bypass with X509_V_FLAG_X509_STRICT | Exploitation statusNot confirmed | FixYes | Affected productOpenSSL | Published03/25/2021 | SeverityUnknown |
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.
Explore CyStack VulnScan