CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,459 vulnerabilities with CWE-476
CVE-2026-53382 MEDIUM
media: vidtv: fix NULL pointer dereference in vidtv_mux_push_si
CVSS 5.5
CVE-2026-62309 HIGH
CoreDNS: proxyproto plugin panics on PPv2 datagram with non-UDP transport — single 28-byte packet remote DoS
CVSS 7.5
CVE-2026-62299 MEDIUM
CoreDNS: rewrite-plugin EDNS0 response-revert nil-pointer panic (remote DoS) when a downstream plugin returns a response with no OPT record
CVSS 5.3
CVE-2026-15352 HIGH
NASA Core Flight System (cFS) Health & Safety (HS) Application NULL Pointer Dereference
CVSS 7.5
CVE-2026-52865 MEDIUM
NGINX Ingress Controller vulnerability
CVSS 6.5
CVE-2026-56168 MEDIUM
Microsoft Windows 10 Version 21H2 - Windows SMB Server Denial of Service Vulnerability
CVSS 6.5
CVE-2026-50673 HIGH
Microsoft Windows 10 Version 1607 - Windows Kernel Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-50366 MEDIUM
Windows Active Directory Domain Services Denial of Service Vulnerability
CVSS 6.5
CVE-2026-50315 HIGH
Microsoft Windows 11 Version 24H2 - Windows Image Acquisition Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-57976 MEDIUM
Windows Active Directory Domain Services Denial of Service Vulnerability
CVSS 6.5
CVE-2026-10670 MEDIUM
User-triggerable kernel NULL-pointer dereference (DoS) in `k_thread_name_copy()` syscall verifier
CVSS 5.5
CVE-2026-15690 LOW
open62541 Shared Client ua_client_connect.c responseReadNamespacesArray null pointer dereference
CVSS 3.1
CVE-2026-58101 HIGH
Crypt::OpenSSL::X509 versions before 2.1.3 for Perl allow denial of service via NULL pointer dereference
CVSS 7.5
CVE-2026-55783 LOW
NanaZip: NULL pointer dereference in Extract() of all seven NanaZip custom archive handlers when extracting/testing the whole archive
CVE-2026-21901 MEDIUM
Junos OS and Junos OS Evolved: Configuration of a specific SSH option results in mgd crash
CVSS 4.4
CVE-2026-60109 HIGH
Zeek < 8.0.9 Null Pointer Dereference DoS via Kerberos KRB_ERROR Parsing
CVSS 7.5
CVE-2026-15184 LOW
GNU LibreDWG DWG File dwg.c dwg_next_entity null pointer dereference
CVSS 3.3
CVE-2026-56288 MEDIUM
NULL Pointer Dereference in GNU patch
CVSS 5.5
CVE-2026-15171 MEDIUM
NULL Pointer Dereference in Wireshark
CVSS 5.5
CVE-2026-58250 HIGH
NATS Server: Pre-auth server crash via double INFO in leafnode handshake
CVSS 7.5
CVE-2026-44512 MEDIUM
ONNX: Null Pointer Dereference in Upsample Version Converter Adapter (Zero Inputs)
CVSS 5.5
CVE-2026-50812 MEDIUM
SQLite < 3.53.1 and Trunk < e807d4e3798 - Denial of Service via Malformed Session Extension Changeset
CVSS 5.5
CVE-2026-50810 MEDIUM
GPAC < b35c61f - Denial of Service via NULL Pointer Dereference in smooth_parse_stream_index
CVSS 5.5
CVE-2026-10659 MEDIUM
NULL pointer dereference in Zephyr Dhara FTL disk driver on flash read error during journal resume
CVSS 4.7
CVE-2026-38976 HIGH
mrubyc < 3.4.2 - NULL Pointer Dereference in OP_SUPER via Missing Top-Level Super Guard
CVSS 7.5
Details
Vulnerabilities 5,459
Exploit Likelihood Medium