Wireshark Foundation has 16 CVEs on record. Disclosure cadence is accelerating: 15 in the last 90 days against 0 in the 90 before. The busiest recent month was August 2026 with 15. The median CVSS is 4.7 (medium). None have a confirmed exploitation report. The dominant weakness classes are CWE-122 (5) and CWE-126 (3).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 4.7
- Publish → KEV
- —
- Last 90 days
- 15 prev 0
Worst active — by depth score
CVE-2026-76879High· 7.5Stack-based Buffer Overflow in Wireshark41CVE-2026-76883Medium· 4.7Heap-based Buffer Overflow in Wireshark38CVE-2026-76882Medium· 4.7Out-of-bounds Read in Wireshark38CVE-2026-76924Medium· 5.5Out-of-bounds Read in Wireshark30CVE-2026-76922Medium· 5.5NULL Pointer Dereference in Wireshark30
Wireshark Foundation vulnerabilities
CVEs affecting Wireshark Foundation, newest first. Open any entry for full detail, references, and exploit status.
16 CVEsRSS
CVE-2026-76885Low· 3.1Buffer Over-read in Wireshark
Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76879High· 7.5Stack-based Buffer Overflow in Wireshark
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76883Medium· 4.7PoCHeap-based Buffer Overflow in Wireshark
Catapult DCT2000 file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76882Medium· 4.7PoCOut-of-bounds Read in Wireshark
Bluetooth Attribute Protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76889Medium· 4.7Heap-based Buffer Overflow in Wireshark
UMTS FP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76887Low· 3.1Heap-based Buffer Overflow in Wireshark
Crash in the Wireshark dissection engine in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76884Low· 3.1PoCBuffer Over-read in Wireshark
ERF file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76890Low· 3.1Expired Pointer Dereference in Wireshark
Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76888Low· 3.1PoCHeap-based Buffer Overflow in Wireshark
RDP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76917Medium· 5.5Heap-based Buffer Overflow in Wireshark
Bluetooth AVRCP Profile protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76891Low· 3.1Expired Pointer Dereference in Wireshark
Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76922Medium· 5.5NULL Pointer Dereference in Wireshark
Bluetooth BR/EDR FHS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76919Medium· 5.3Use of Uninitialized Variable in Wireshark
ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76927Medium· 4.7NULL Pointer Dereference in Wireshark
H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76924Medium· 5.5Out-of-bounds Read in Wireshark
Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-3203Medium· 5.5Buffer Over-read in Wireshark
RF4CE Profile protocol dissector crash in Wireshark 4.6.0 to 4.6.3 and 4.4.0 to 4.4.13 allows denial of service