quiche vulnerabilities
CVEs whose affected-version data names the quiche package (rust). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
4 CVEsRSS
CVE-2026-11941Medium· 5.6Cloudflare Quiche: Use-after-free in connection ID iterator FFI functions
Cloudflare Quiche: Use-after-free in connection ID iterator FFI functions
▾ Sunlitquiche · quicheEPSS 0.25%via GHSA
CVE-2024-1410Low· 3.7quiche vulnerable to unbounded storage of information related to connection ID retirement
quiche vulnerable to unbounded storage of information related to connection ID retirement
▾ Sunlitquiche · quicheEPSS 0.66%via OSV
CVE-2024-1765Medium· 5.9quiche vulnerable to unlimited resource allocation by QUIC CRYPTO frames flooding
quiche vulnerable to unlimited resource allocation by QUIC CRYPTO frames flooding
▾ Sunlitquiche · quicheEPSS 1.2%via OSV
CVE-2023-6193Medium· 5.3Unbounded queuing of path validation messages in cloudflare-quiche
Unbounded queuing of path validation messages in cloudflare-quiche
▾ Sunlitquiche · quicheEPSS 0.76%via OSV