sipsorcery vulnerabilities
CVEs whose affected-version data names the sipsorcery package (nuget). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
3 CVEsRSS
CVE-2026-54632High· 7.5SIPSorcery is a WebRTC, SIP, and VoIP library for C# and .NET
SIPSorcery is a WebRTC, SIP, and VoIP library for C# and .NET. Prior to 10.0.9, RTPChannel.OnRTPPacketReceived and the STUNAttribute.ParseMessageAttributes, STUNXORAddressAttribute, and STUNAddressAttribute parsing path index untrusted b…
▾ Twilightsipsorcery-org · sipsorceryEPSS 0.54%via NVD
GHSA-jwjp-4649-v8jpHigh· 7.5SIPSorcery vulnerable to Denial of Service via out-of-bounds read in SCTP SACK chunk parsing
SIPSorcery vulnerable to Denial of Service via out-of-bounds read in SCTP SACK chunk parsing
▾ TwilightSIPSorcery · SIPSorceryvia GHSA
GHSA-pfvm-w89x-94jwHigh· 7.5SIPSorcery: Malformed UDP datagram crashes TurnServer receive loop with no restart, disabling TURN UDP relay for all clients (DoS)
SIPSorcery: Malformed UDP datagram crashes TurnServer receive loop with no restart, disabling TURN UDP relay for all clients (DoS)
▾ TwilightSIPSorcery · SIPSorceryvia GHSA