VulnSea

Wireshark Foundation has 16 CVEs on record. Disclosure cadence is accelerating: 15 in the last 90 days against 0 in the 90 before. The busiest recent month was August 2026 with 15. The median CVSS is 4.7 (medium). None have a confirmed exploitation report. The dominant weakness classes are CWE-122 (5) and CWE-126 (3).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
4.7
Publish → KEV
—
Last 90 days
15 prev 0

Products

  • Wireshark 16
Follow Wireshark Foundation:RSS feedSave a search →Embed badge ↗
16
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

Wireshark Foundation vulnerabilities

CVEs affecting Wireshark Foundation, newest first. Open any entry for full detail, references, and exploit status.

16 CVEsRSS

CVE-2026-76885Low· 3.1
1mo ago

Buffer Over-read in Wireshark

Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ SunlitWireshark Foundation · WiresharkEPSS 0.33%via CVEORG
CVE-2026-76879High· 7.5
1mo ago

Stack-based Buffer Overflow in Wireshark

C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ TwilightWireshark Foundation · WiresharkEPSS 0.31%via CVEORG
CVE-2026-76883Medium· 4.7PoC
1mo ago

Heap-based Buffer Overflow in Wireshark

Catapult DCT2000 file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ TwilightWireshark Foundation · WiresharkEPSS 0.14%via CVEORG
CVE-2026-76882Medium· 4.7PoC
1mo ago

Out-of-bounds Read in Wireshark

Bluetooth Attribute Protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ TwilightWireshark Foundation · WiresharkEPSS 0.14%via CVEORG
CVE-2026-76889Medium· 4.7
1mo ago

Heap-based Buffer Overflow in Wireshark

UMTS FP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ SunlitWireshark Foundation · WiresharkEPSS 0.14%via CVEORG
CVE-2026-76887Low· 3.1
1mo ago

Heap-based Buffer Overflow in Wireshark

Crash in the Wireshark dissection engine in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ SunlitWireshark Foundation · WiresharkEPSS 0.31%via CVEORG
CVE-2026-76884Low· 3.1PoC
1mo ago

Buffer Over-read in Wireshark

ERF file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ TwilightWireshark Foundation · WiresharkEPSS 0.33%via CVEORG
CVE-2026-76890Low· 3.1
1mo ago

Expired Pointer Dereference in Wireshark

Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ SunlitWireshark Foundation · WiresharkEPSS 0.33%via CVEORG
CVE-2026-76888Low· 3.1PoC
1mo ago

Heap-based Buffer Overflow in Wireshark

RDP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ TwilightWireshark Foundation · WiresharkEPSS 0.33%via CVEORG
CVE-2026-76917Medium· 5.5
1mo ago

Heap-based Buffer Overflow in Wireshark

Bluetooth AVRCP Profile protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ SunlitWireshark Foundation · WiresharkEPSS 0.14%via CVEORG
CVE-2026-76891Low· 3.1
1mo ago

Expired Pointer Dereference in Wireshark

Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ SunlitWireshark Foundation · WiresharkEPSS 0.33%via CVEORG
CVE-2026-76922Medium· 5.5
1mo ago

NULL Pointer Dereference in Wireshark

Bluetooth BR/EDR FHS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ SunlitWireshark Foundation · WiresharkEPSS 0.14%via CVEORG
CVE-2026-76919Medium· 5.3
1mo ago

Use of Uninitialized Variable in Wireshark

ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ SunlitWireshark Foundation · WiresharkEPSS 0.47%via CVEORG
CVE-2026-76927Medium· 4.7
1mo ago

NULL Pointer Dereference in Wireshark

H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ SunlitWireshark Foundation · WiresharkEPSS 0.26%via CVEORG
CVE-2026-76924Medium· 5.5
1mo ago

Out-of-bounds Read in Wireshark

Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

▾ SunlitWireshark Foundation · WiresharkEPSS 0.14%via CVEORG
CVE-2026-3203Medium· 5.5
7mo ago

Buffer Over-read in Wireshark

RF4CE Profile protocol dissector crash in Wireshark 4.6.0 to 4.6.3 and 4.4.0 to 4.4.13 allows denial of service

▾ SunlitWireshark Foundation · WiresharkEPSS 0.26%via CVEORG
Wireshark Foundation vulnerabilities (CVEs) · VulnSea