NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-91866 A specially crafted pair of WS-Policy documents can force Neethi's policy-intersection to do exponential amounts of work, pinning the CPU for a long t... 2026-09-21 7.5 NETWORK HIGH NVD
CVE-2026-91865 A small WS-Policy document using repeated policy references can force Neethi to re-expand the same references exponentially during normalization, cons... 2026-09-21 7.5 NETWORK HIGH NVD
CVE-2026-91864 A specially crafted WS-Policy document can pack unlimited content inside a policy assertion, which Neethi copies into memory without counting it again... 2026-09-21 7.5 NETWORK HIGH NVD
CVE-2026-91863 A specially crafted WS-Policy document with deeply nested policy elements can bypass Neethi's nesting-depth limit and exhaust the thread stack, crashi... 2026-09-21 7.5 NETWORK HIGH NVD
CVE-2026-89139 Temporal Server compiles a Worker Controller Instance module into its Worker Service, and that module registers a compute provider named subprocess wh... 2026-09-21 8.7 NETWORK HIGH NVD
CVE-2026-87858 Temporal Server decided whether a Workflow completion callback was internal by reading a caller-supplied HTTP header. An authenticated caller holding ... 2026-09-21 7.2 NETWORK HIGH NVD
CVE-2026-65654 github.com/temporalio/ringpop-go enforces configured LabelOptions limits when an application changes the local node's labels, but affected versions do... 2026-09-21 8.7 NETWORK HIGH NVD
CVE-2026-65653 github.com/temporalio/tchannel-go did not reject TChannel call fragments containing checksum metadata but no length-prefixed argument chunks. The frag... 2026-09-21 8.7 NETWORK HIGH NVD
CVE-2026-65652 github.com/temporalio/tchannel-go did not validate the one-byte checksum-type field in inbound TChannel call frames. A network peer that can reach a l... 2026-09-21 8.7 NETWORK HIGH NVD
CVE-2026-65651 temporalio/sqlparser accepts SQL containing deeply nested unary expressions and can return a correspondingly deep abstract syntax tree without enforci... 2026-09-21 8.7 NETWORK HIGH NVD
CVE-2026-16652 Temporal Server did not bound the work performed while searching for a Schedule's next action time. An authenticated caller with namespace write permi... 2026-09-21 7.1 NETWORK HIGH NVD
CVE-2026-16651 temporalio/sqlparser can panic when Parse, ParseStrictDDL, or ParseNext processes a MySQL version comment whose contents are empty or consist only of ... 2026-09-21 8.7 NETWORK HIGH NVD
CVE-2026-92574 A vulnerability in CRI-O checkpoint restore allows a user who can create a pod from a malicious checkpointed container to bypass the destination Kuber... 2026-09-21 8.8 NETWORK HIGH NVD
CVE-2026-15801 A vulnerability was found in CRI-O related to the container checkpoint and restore feature. When CRI-O is configured to restore containers from checkp... 2026-09-21 8.0 NETWORK HIGH NVD
CVE-2026-47321 The CompressionFilter class uses ZLib to deflate and inflate data sent and received. When we inflate incoming data, the filter does not control the re... 2026-09-21 7.5 NETWORK HIGH NVD