Vulnerabilities in Cesanta
31 resultsVexday analysis
A Cesanta possui 31 CVEs registradas com 4 classificadas como críticas, mas nenhuma está sob ataque ativo confirmado. O risco é moderado e estável, com apenas 3 vulnerabilidades publicadas nos últimos 90 dias, sugerindo que o fornecedor não é alvo prioritário de exploração atual. A fraqueza dominante é CWE-823, que concentra a maioria das exposições identificadas.
CVE-2018-25193HIGHMongoose Web Server 6.9 Denial of Service via Socket ConnectionEPSS 0.3%CVE-2024-42389MEDIUMUse of Out-of-range Pointer Offset in Mongoose Web Server libraryEPSS 0.3%CVE-2024-42387MEDIUMUse of Out-of-range Pointer Offset in Mongoose Web Server libraryEPSS 0.3%CVE-2024-42388MEDIUMUse of Out-of-range Pointer Offset in Mongoose Web Server libraryEPSS 0.3%CVE-2024-42391MEDIUMUse of Out-of-range Pointer Offset in Mongoose Web Server libraryEPSS 0.3%CVE-2024-42390MEDIUMUse of Out-of-range Pointer Offset in Mongoose Web Server libraryEPSS 0.3%CVE-2024-42383MEDIUMUse of Out-of-range Pointer Offset in Mongoose Web Server libraryEPSS 0.3%CVE-2026-2968MEDIUMCesanta Mongoose Poly1305 Authentication Tag tls_chacha20.c mg_chacha20_poly1305_decrypt signature verificationEPSS 0.2%CVE-2026-6986MEDIUMCesanta Mongoose GCM Authentication Tag tls_aes128.c mg_aes_gcm_decrypt signature verificationEPSS 0.2%CVE-2024-42392MEDIUMImproper Neutralization of Delimiters in Mongoose Web Server libraryEPSS 0.2%CVE-2024-42385MEDIUMImproper Neutralization of Delimiters in Mongoose Web Server libraryEPSS 0.1%