CVE-2026-33986
published 2026-03-30CVE-2026-33986: FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in yuv_ensure_buffer() in libfreerdp/codec/h264.c, h264->width and…
PriorityP342high7.5CVSS 3.1
AVNACHPRNUIRSUCHIHAH
EPSS
0.27%
18.0th percentile
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in yuv_ensure_buffer() in libfreerdp/codec/h264.c, h264->width and h264->height are updated before the reallocation loop. If any winpr_aligned_recalloc() call fails, the function returns FALSE but width/height are already inflated. This issue has been patched in version 3.24.2.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | freerdp2 | < freerdp3 3.24.2+dfsg-1 (forky) | freerdp3 3.24.2+dfsg-1 (forky) |
| debian | freerdp3 | < freerdp3 3.24.2+dfsg-1 (forky) | freerdp3 3.24.2+dfsg-1 (forky) |
| freerdp | freerdp | < 3.24.2 | 3.24.2 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
FreeRDP: FreeRDP: Arbitrary code execution or denial of service via H.264 codec memory allocation vulnerability
vendor_redhat·2026-03-30·CVSS 7.5
CVE-2026-33986 [HIGH] CWE-131 FreeRDP: FreeRDP: Arbitrary code execution or denial of service via H.264 codec memory allocation vulnerability
FreeRDP: FreeRDP: Arbitrary code execution or denial of service via H.264 codec memory allocation vulnerability
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in yuv_ensure_buffer() in libfreerdp/codec/h264.c, h264->width and h264->height are updated before the reallocation loop. If any winpr_aligned_recalloc() call fails, the function returns FALSE but width/height are already inflated. This issue has been patched in version 3.24.2.
A flaw was found in FreeRDP, a free implementation of the Remote Desktop Protocol. A remote attacker could exploit a memory allocation vulnerability in the H.264 codec by enticing a user to connect to a malicious server. This flaw occurs when internal buffer dimensions are incorrectly updated after a failed memory r
Debian
CVE-2026-33986: freerdp2 - FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to versio...
vendor_debian·2026·CVSS 7.5
CVE-2026-33986 [HIGH] CVE-2026-33986: freerdp2 - FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to versio...
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in yuv_ensure_buffer() in libfreerdp/codec/h264.c, h264->width and h264->height are updated before the reallocation loop. If any winpr_aligned_recalloc() call fails, the function returns FALSE but width/height are already inflated. This issue has been patched in version 3.24.2.
Scope: local
bookworm: open
bullseye: open
VulDB
FreeRDP up to 3.24.1 libfreerdp/codec/h264.c yuv_ensure_buffer heap-based overflow (EUVD-2026-17233 / Nessus ID 312138)
vuldb·2026-07-02·CVSS 7.5
CVE-2026-33986 [HIGH] FreeRDP up to 3.24.1 libfreerdp/codec/h264.c yuv_ensure_buffer heap-based overflow (EUVD-2026-17233 / Nessus ID 312138)
A vulnerability was found in FreeRDP up to 3.24.1. It has been declared as critical. Affected is the function yuv_ensure_buffer of the file libfreerdp/codec/h264.c. The manipulation results in heap-based buffer overflow.
This vulnerability is identified as CVE-2026-33986. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
OSV
CVE-2026-33986: FreeRDP is a free implementation of the Remote Desktop Protocol
osv·2026-03-30·CVSS 7.5
CVE-2026-33986 [HIGH] CVE-2026-33986: FreeRDP is a free implementation of the Remote Desktop Protocol
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in yuv_ensure_buffer() in libfreerdp/codec/h264.c, h264->width and h264->height are updated before the reallocation loop. If any winpr_aligned_recalloc() call fails, the function returns FALSE but width/height are already inflated. This issue has been patched in version 3.24.2.
No detection rules found.
No public exploits indexed.
Wiz
CVE-2026-26514 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2026-26514 [HIGH] CVE-2026-26514 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-26514 :
Linux Alpine vulnerability analysis and mitigation
An Argument Injection vulnerability exists in bird-lg-go before commit 6187a4e. The traceroute module uses shlex.Split to parse user input without validation, allowing remote attackers to inject arbitrary flags (e.g., -w, -q) via the q parameter. This can be exploited to cause a Denial of Service (DoS) by exhausting system resources.
Source : NVD
## 7.5
Score
Published March 4, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 38.4
Exploitation Probability (EPSS) 0.2
Affected packages and libraries
bird-lg-go
Sources
NVD
Alpine 3.18, 3.19, 3.20
Wiz
CVE-2025-63658 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63658 [HIGH] CVE-2025-63658 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63658 :
Linux Alpine vulnerability analysis and mitigation
A stack overflow in the mk_http_index_lookup function (mk_server/mk_http.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 55.3
Exploitation Probability (EPSS) 0.3
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 15, 2026
## Get a CVE risk assessment
Get a prioritized vi
Wiz
CVE-2025-63651 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63651 [HIGH] CVE-2025-63651 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63651 :
Linux Alpine vulnerability analysis and mitigation
A use-after-free in the mk_string_char_search function (mk_core/mk_string.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 75.7
Exploitation Probability (EPSS) 0.9
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 20, 2026
## Get a CVE risk assessment
Get a prioritized v
Wiz
CVE-2025-65203 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.1
CVE-2025-65203 [HIGH] CVE-2025-65203 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-65203 :
Linux Alpine vulnerability analysis and mitigation
KeePassXC-Browser thru 1.9.9.2 autofills or prompts to fill stored credentials into documents rendered under a browser-enforced CSP directive and iframe attribute sandbox, allowing attacker-controlled script in the sandboxed document to access populated form fields and exfiltrate credentials.
Source : NVD
## 7.1
Score
Published December 17, 2025
Severity HIGH
CNA Score 7.1
Affected Technologies
Linux Alpine
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 5.2
Exploitation Probability (EPSS) N/A
Affected packages and libraries
keepassxc-browser
Sources
NVD
Alpine 3.23 Severity HIGH No Fix Added at: Jan 28, 2026
Wiz
CVE-2025-63649 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63649 [HIGH] CVE-2025-63649 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63649 :
Linux Alpine vulnerability analysis and mitigation
An out-of-bounds read in the http_parser_transfer_encoding_chunked function (mk_server/mk_http_parser.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted POST request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 6.5
Exploitation Probability (EPSS) N/A
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 20, 2026
## Get a CVE risk asses
Wiz
CVE-2025-53470 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 3.1
CVE-2025-53470 [LOW] CVE-2025-53470 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-53470 :
Linux Alpine vulnerability analysis and mitigation
Out-of-bounds Read vulnerability in Apache NimBLE HCI H4 driver. Specially crafted HCI event could lead to invalid memory read in H4 driver.
This issue affects Apache NimBLE: through 1.8.
This issue requires a broken or bogus Bluetooth controller and thus severity is considered low.
Users are recommended to upgrade to version 1.9, which fixes the issue.
Source : NVD
## 3.1
Score
Published January 10, 2026
Severity LOW
CNA Score 3.1
Affected Technologies
Linux Alpine
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 5.8
Exploitation Probability (EPSS) N/A
Affected packages and libraries
nimble
Sources
NVD
Alpi
Wiz
CVE-2025-63657 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63657 [HIGH] CVE-2025-63657 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63657 :
Linux Alpine vulnerability analysis and mitigation
An out-of-bounds read in the mk_mimetype_find function (mk_server/mk_mimetype.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 76.6
Exploitation Probability (EPSS) 1
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 15, 2026
## Get a CVE risk assessment
Get a prioritized
Wiz
CVE-2026-33986 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 5.1
CVE-2026-33986 [MEDIUM] CVE-2026-33986 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-33986 :
NixOS vulnerability analysis and mitigation
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in yuv_ensure_buffer() in libfreerdp/codec/h264.c, h264->width and h264->height are updated before the reallocation loop. If any winpr_aligned_recalloc() call fails, the function returns FALSE but width/height are already inflated. This issue has been patched in version 3.24.2.
Source : NVD
## 7.5
Score
Published March 30, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
NixOS
Wolfi
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 13.7
Exploitation Probability (EPSS) N/A
Affected packages and libraries
freerdp-libs-debuginfo
Wiz
CVE-2025-63655 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63655 [HIGH] CVE-2025-63655 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63655 :
Linux Alpine vulnerability analysis and mitigation
A NULL pointer dereference in the mk_http_range_parse function (mk_server/mk_http.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 76.4
Exploitation Probability (EPSS) 1
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 15, 2026
## Get a CVE risk assessment
Get a priorit
Wiz
CVE-2025-58151 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-58151 [HIGH] CVE-2025-58151 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-58151 :
Linux Alpine vulnerability analysis and mitigation
[varstored: TOCTOU issues with mapped guest memory]
Source : NVD
Published February 5, 2026
CNA Score N/A
Affected Technologies
Linux Alpine
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) N/A
Exploitation Probability (EPSS) N/A
Affected packages and libraries
xen
Sources
NVD
Alpine 3.20, 3.21, 3.22, 3.23, edge Has Fix Added at: Jan 28, 2026
## Get a CVE risk assessment
Get a prioritized view of CVEs in your cloud—so you can focus on what's exploitable, not just what's listed.
## Related Linux Alpine vulnerabilities:
CVE ID
Severity
Score
Technologies
Component name
CISA KEV exploit
Has fix
Published
Wiz
CVE-2026-24044 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 9.2
CVE-2026-24044 [CRITICAL] CVE-2026-24044 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-24044 :
Linux Alpine vulnerability analysis and mitigation
Element Server Suite Community Edition (ESS Community) deploys a Matrix stack using the provided Helm charts and Kubernetes distribution. The ESS Community Helm Chart secrets initialization hook (using matrix-tools container before 0.5.7) is using an insecure Matrix server key generation method, allowing network attackers to potentially recreate the same key pair, allowing them to impersonate the victim server. The secret is generated by the secrets initialization hook, in the ESS Community Helm Chart values, if both initSecrets.enabled is not set to false and synapse.signingKey is not defined. Given a server key in Matrix authenticates both requests originating from and events constructed on a given server, this pote
Wiz
CVE-2025-53477 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-53477 [HIGH] CVE-2025-53477 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-53477 :
Linux Alpine vulnerability analysis and mitigation
NULL Pointer Dereference vulnerability in Apache Nimble.
Missing validation of HCI connection complete or HCI command TX buffer could lead to NULL pointer dereference.
This issue requires disabled asserts and broken or bogus Bluetooth controller and thus severity is considered low.
This issue affects Apache NimBLE: through 1.8.0.
Users are recommended to upgrade to version 1.9.0, which fixes the issue.
Source : NVD
## 7.5
Score
Published January 10, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 58.2
Exploitation Probability (EPSS) 0.4
Affecte
Wiz
CVE-2025-52435 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-52435 [HIGH] CVE-2025-52435 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-52435 :
Linux Alpine vulnerability analysis and mitigation
J2EE Misconfiguration: Data Transmission Without Encryption vulnerability in Apache NimBLE.
Improper handling of Pause Encryption procedure on Link Layer results in a previously encrypted connection being left in un-encrypted state allowing an eavesdropper to observe the remainder of the exchange.
This issue affects Apache NimBLE: through <= 1.8.0.
Users are recommended to upgrade to version 1.9.0, which fixes the issue.
Source : NVD
## 7.5
Score
Published January 10, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 11.2
Exploitation Probability (
Wiz
CVE-2025-63650 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63650 [HIGH] CVE-2025-63650 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63650 :
Linux Alpine vulnerability analysis and mitigation
An out-of-bounds read in the mk_ptr_to_buf in mk_core function (mk_memory.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 76.6
Exploitation Probability (EPSS) 1
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 20, 2026
## Get a CVE risk assessment
Get a prioritized vie
Wiz
CVE-2026-27734 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 6.5
CVE-2026-27734 [MEDIUM] CVE-2026-27734 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-27734 :
Linux Alpine vulnerability analysis and mitigation
../
Source : NVD
## 6.5
Score
Published February 27, 2026
Severity MEDIUM
CNA Score 6.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 3.7
Exploitation Probability (EPSS) N/A
Affected packages and libraries
github.com/henrygd/beszel
beszel
Sources
NVD
Alpine 3.23 Severity MEDIUM No Fix Added at: Mar 04, 2026
GoLang Severity MEDIUM Has Fix Added at: Mar 02, 2026
## Get a CVE risk assessment
Get a prioritized view of CVEs in your cloud—so you can focus on what's exploitable, not just what's listed.
## Related Linux Alpine vulnerabilities:
CVE ID
Severity
Score
Te
Wiz
CVE-2025-63652 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63652 [HIGH] CVE-2025-63652 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63652 :
Linux Alpine vulnerability analysis and mitigation
A use-after-free in the mk_http_request_end function (mk_server/mk_http.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 76.6
Exploitation Probability (EPSS) 1
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 15, 2026
## Get a CVE risk assessment
Get a prioritized view
Wiz
CVE-2026-4167 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2026-4167 [HIGH] CVE-2026-4167 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-4167 :
Linux Alpine vulnerability analysis and mitigation
A vulnerability was determined in Belkin F9K1122 1.00.33. This affects the function formReboot of the file /goform/formReboot. This manipulation of the argument webpage causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
Source : NVD
## 7.4
Score
Published March 16, 2026
Severity HIGH
CNA Score 7.4
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 14.9
Exploitation Probability (EPSS) N/A
Affected packages and librari
Wiz
CVE-2025-63653 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63653 [HIGH] CVE-2025-63653 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63653 :
Linux Alpine vulnerability analysis and mitigation
An out-of-bounds read in the mk_vhost_fdt_close function (mk_server/mk_vhost.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 76.6
Exploitation Probability (EPSS) 1
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 15, 2026
## Get a CVE risk assessment
Get a prioritized
Wiz
CVE-2025-62235 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 8.1
CVE-2025-62235 [HIGH] CVE-2025-62235 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-62235 :
Linux Alpine vulnerability analysis and mitigation
Authentication Bypass by Spoofing vulnerability in Apache NimBLE.
Receiving specially crafted Security Request could lead to removal of original bond and re-bond with impostor.
This issue affects Apache NimBLE: through 1.8.0.
Users are recommended to upgrade to version 1.9.0, which fixes the issue.
Source : NVD
## 8.1
Score
Published January 10, 2026
Severity HIGH
CNA Score 8.1
Affected Technologies
Linux Alpine
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 13.2
Exploitation Probability (EPSS) N/A
Affected packages and libraries
nimble
Sources
NVD
Alpine 3.15, 3.16, 3.17, 3.18, 3.19, 3.20, 3.21, edge Sever
Wiz
CVE-2025-63656 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63656 [HIGH] CVE-2025-63656 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63656 :
Linux Alpine vulnerability analysis and mitigation
An out-of-bounds read in the header_cmp function (mk_server/mk_http_parser.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 76.6
Exploitation Probability (EPSS) 1
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 15, 2026
## Get a CVE risk assessment
Get a prioritized vi
https://github.com/FreeRDP/FreeRDP/commit/f6e43e208958140074ae9bb93cd0c9045a371c77https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-h6qw-wxvm-hf97https://access.redhat.com/security/cve/CVE-2026-33986https://bugzilla.redhat.com/show_bug.cgi?id=2453221https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-33986.json
2026-03-30
Published