Cwe-476 - NULL Pointer Dereference is a cwe tracked across 34 threat clusters and 50 intelligence report mentions on ThreatCluster. First observed April 24, 2026; most recent activity July 22, 2026.
On June 17, 2026, F5 released emergency patches for two critical vulnerabilities in NGINX, CVE-2026-42530 and CVE-2026-42055. These vulnerabilities affect NGINX Open Source, NGINX Plus, and related products, allowing…
Oracle has released important security updates for PHP versions 7.4 and 8.0, addressing multiple vulnerabilities including critical cross-site scripting (XSS) flaws and memory management issues. The updates fix…
Recent updates for strongSwan, affecting SUSE and Ubuntu systems, have addressed several critical vulnerabilities. The issues include CVE-2026-35328, which can cause an infinite loop in TLS processing, and…
F5 disclosed a critical vulnerability in NGINX, identified as CVE-2026-42533, which can lead to remote code execution (RCE) and denial-of-service (DoS) attacks. The flaw is a heap buffer overflow triggered by crafted…
Recent updates for ImageMagick have addressed numerous critical vulnerabilities affecting Mageia and SUSE systems. Mageia's advisory (MGASA-2026-0252) published on July 14, 2026, lists multiple CVEs, including…
A severe Linux kernel vulnerability, CVE-2026-43499, known as GhostLock, has been publicly disclosed by Nebula Security's VEGA team. This flaw, present since 2011, allows any logged-in user to gain full root control of…
A cluster of vulnerabilities in PHP's SOAP extension has been disclosed, allowing unauthenticated Remote Code Execution (RCE) on affected servers. This includes a high-severity flaw that poses a significant risk to…
Oracle Linux 9 has issued two important advisories addressing critical vulnerabilities in the Apache HTTP Server. The first advisory (ELSA-2026-21391) details multiple CVEs, including CVE-2026-28780, which allows…
openSUSE has released critical updates for the Tor software, addressing several vulnerabilities identified as CVE-2026-44597, CVE-2026-44599, CVE-2026-44600, CVE-2026-44601, CVE-2026-44602, and CVE-2026-44603. These…
On July 20, 2026, multiple vulnerabilities in PHP were disclosed, affecting Ubuntu 26.04 LTS. The vulnerabilities include a NULL pointer dereference (CVE-2026-12184) and a buffer allocation flaw in the OpenSSL extension…