CWE-406
CVEs classified under CWE-406, newest first.
3 CVEsRSS
CVE-2026-16515Medium· 4.7net_icmpv6_send_error() in subsys/net/ip/icmpv6.c implemented only one of the three RFC 4443 section 2.4 suppression rules (do not answer an ICMPv6 error with an ICMPv6 error)
net_icmpv6_send_error() in subsys/net/ip/icmpv6.c implemented only one of the three RFC 4443 section 2.4 suppression rules (do not answer an ICMPv6 error with an ICMPv6 error). It did not check whether the triggering packet's source addr…
▾ Sunlitzephyrproject · zephyrEPSS 0.20%via NVD
CVE-2026-86202Medium· 4.3PocketMine-MP versions before 5.39.2 contain a network amplification vulnerability in ActorEventPacket handling that allows clients to trigger consuming animations for all visible players
PocketMine-MP versions before 5.39.2 contain a network amplification vulnerability in ActorEventPacket handling that allows clients to trigger consuming animations for all visible players. Attackers can send crafted ActorEventPacket mess…
▾ Sunlitpmmp · PocketMine-MPEPSS 0.26%via NVD
CVE-2026-54609High· 8.6QTINeon has unauthenticated relay-to-host amplification via unbounded RECONNECT_REQUEST forwarding
QTINeon has unauthenticated relay-to-host amplification via unbounded RECONNECT_REQUEST forwarding
▾ Twilightquietterminal · com.quietterminal:qti-neonEPSS 0.26%via GHSA