CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,459 vulnerabilities with CWE-476
CVE-2026-30986 MEDIUM
iccDEV <2.3.1.5 - Memory Corruption
CVSS 5.5
CVE-2026-25168 MEDIUM
Windows 10/11 DoS via Null Pointer Dereference
CVSS 6.2
CVE-2026-25165 HIGH
Windows Performance Counters - Privilege Escalation
CVSS 7.8
CVE-2026-24641 LOW
FortiWeb 7.0.0-7.6.6, 8.0.0-8.0.2 - Authenticated Denial of Service via HTTP Request
CVSS 2.7
CVE-2026-24293 HIGH
Windows AFD for WinSock - Privilege Escalation
CVSS 7.8
CVE-2026-3665 LOW
xlnt-community xlnt <=1.6.1 - Memory Corruption
CVSS 3.3
CVE-2026-29781 MEDIUM
Sliver <= 1.7.3 - Authenticated Denial of Service via Protobuf Unmarshalling
CVSS 6.5
CVE-2026-20064 MEDIUM
Cisco Secure Firewall Threat Defense Software - Authenticated Denial of Service via CLI Command Injection
CVSS 6.5
CVE-2026-23237 MEDIUM
Linux Kernel - NULL Pointer Dereference
CVSS 5.5
CVE-2026-3408 MEDIUM
Open Babel <=3.1.1 - Memory Corruption
CVSS 4.3
CVE-2026-3392 LOW
FascinatedBox lily <=2.3 - Memory Corruption
CVSS 3.3
CVE-2026-3389 LOW
Squirrel up to 3.2 - Memory Corruption
CVSS 3.3
CVE-2026-3387 LOW
wren-lang wren <=0.4.0 - Memory Corruption
CVSS 3.3
CVE-2026-27141 HIGH
golang.org/x/net/http2 0.50.0-0.50.9 - Denial of Service via Malformed HTTP/2 Frame
CVSS 7.5
CVE-2026-22722 MEDIUM
VMware Workstation >=17.0 <25H2u1 - Authenticated Denial of Service via Null Pointer Dereference
CVSS 6.1
CVE-2026-3202 MEDIUM
Wireshark 4.6.0-4.6.3 - Denial of Service via NTS-KE Protocol Dissector
CVSS 4.7
CVE-2026-3146 LOW
libvips <=8.18.0 - Memory Corruption
CVSS 3.3
CVE-2026-0401 MEDIUM
SonicOS < 7.3.2-7010 - Authenticated Denial of Service via NULL Pointer Dereference
CVSS 4.9
CVE-2026-26983 MEDIUM
ImageMagick <7.1.2-15/6.9.13-40 - Use After Free
CVSS 5.3
CVE-2026-26025 HIGH
free5gc/smf <= 1.4.1 - Denial of Service via Malformed PFCP SessionReportRequest
CVSS 7.5
CVE-2026-26024 HIGH
free5GC SMF <= 1.4.1 - Denial of Service via Malformed PFCP SessionReportRequest
CVSS 7.5
CVE-2026-25798 MEDIUM
ImageMagick <7.1.2-15/6.9.13-40 - DoS
CVSS 5.3
CVE-2026-25795 MEDIUM
ImageMagick <7.1.2-15/<6.9.13-40 - DoS
CVSS 5.3
CVE-2026-25501 HIGH
free5gc/smf <= 1.4.1 - Denial of Service via Malformed PFCP SessionReportRequest
CVSS 7.5
CVE-2026-2903 LOW
skvadrik re2c <=4.4 - Memory Corruption
CVSS 3.3
Details
Vulnerabilities 5,459
Exploit Likelihood Medium