The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.
794 vulnerabilities with CWE-617
CVE-2026-3608
HIGH
ISC Kea - Stack Overflow Denial of Service
CVSS 7.5
CVE-2026-23555
HIGH
Xenstored DoS by unprivileged domain
CVSS 7.1
CVE-2026-27135
HIGH
nghttp2 Denial of service: Assertion failure due to the missing state validation
CVSS 7.5
CVE-2026-23238
MEDIUM
Linux Kernel 2.6.12.1-5.10.251 - Reachable Assertion via romfs sb_set_blocksize Failure
CVSS 5.5
CVE-2026-27809
CRITICAL
psd-tools < 1.12.2 - Denial of Service via Malformed RLE-Compressed Image Data
CVSS 9.1
CVE-2026-27015
MEDIUM
FreeRDP < 3.23.0 - Denial of Service via Smartcard Read Size Alignment Bounds Check
CVSS 6.5
CVE-2026-27623
HIGH
Valkey 9.0.0-9.0.3 - Denial of Service via Empty Request Handling
CVSS 7.5
CVE-2026-2523
MEDIUM
open5gs < 2.7.6 - Reachable Assertion in SMF GN Handler
CVSS 5.3
CVE-2026-25610
MEDIUM
MongoDB 7.0.0-7.0.28 - Authenticated Denial of Service via $geoNear Pipeline with Invalid Index Hints
CVSS 6.5
CVE-2026-23067
MEDIUM
Linux Kernel 6.16-6.18.8 - Reachable Assertion via IOVA Address Overflow in IOMMU Unmap Path
CVSS 5.5
CVE-2026-20422
MEDIUM
MediaTek Modem - Input Validation Denial of Service
CVSS 6.5
CVE-2026-20405
MEDIUM
MediaTek Modem - Bounds Check Denial of Service
CVSS 6.5
CVE-2026-20401
HIGH
MediaTek NR15 and MT Series - Remote Denial of Service via Rogue Base Station
CVSS 7.5
CVE-2026-1738
MEDIUM
open5gs < 2.7.6 - Reachable Assertion in SGWC Tunnel Addition
CVSS 5.3
CVE-2026-1737
MEDIUM
open5gs < 2.7.6 - Reachable Assertion in CreateBearerRequest Handler
CVSS 5.3
CVE-2026-1736
MEDIUM
Open5GS <2.7.6 - Reachable Assertion
CVSS 5.3
CVE-2026-24826
CRITICAL
cadaver turso3d - Memory Safety and Divide-by-Zero Flaws
CVE-2026-22990
HIGH
Linux Kernel - Reachable Assertion in libceph osdmap_apply_incremental
CVSS 7.5
CVE-2026-23991
MEDIUM
go-tuf 2.0.0-2.3.0 - Denial of Service via Invalid TUF Metadata JSON
CVSS 5.9
CVE-2025-56365
HIGH
Matter SDK < 1.4.0 - Denial of Service via Reachable Assertion in Command Processing for Nonexistent Endpoint
CVSS 7.5
CVE-2025-56362
HIGH
Matter SDK < 1.4.2 - Unauthenticated Denial of Service via Level Control Cluster Assertion Failure
CVSS 7.5
CVE-2025-56361
HIGH
Matter SDK (connectedhomeip) 1.3-1.4 - Unauthenticated Denial of Service via Level Control Cluster Invariant Assertion
CVSS 7.5
CVE-2025-56568
HIGH
Open5GS < 2.7.5 - Denial of Service via Malformed NGAP Message Length Field
CVSS 7.5
CVE-2025-69653
MEDIUM
QuickJS 2025-09-13 - Denial of Service via Crafted JavaScript Input in Garbage Collection
CVSS 6.5
CVE-2025-69534
HIGH
Python-Markdown < 3.8.1 - Unauthenticated Denial of Service via Malformed HTML-like Sequence
CVSS 7.5
Details
Vulnerabilities
794