VDB

CVE-2026-28386

CVE-2026-28386 PUBLISHED CVSS 8.699999809265137 HIGH

Ein Angreifer kann mehrere Schwachstellen in OpenSSL ausnutzen, um einen Denial of Service Angriff durchzuführen, vertrauliche Informationen offenzulegen oder andere, nicht näher spezifizierte Angriffe durchzuführen.

EPSS 0.31% · 23.7th percentile

Risk Scores

CVSS 4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.31%
23.7th percentile

Affected Products

VendorProductVersions
MicrosoftMicrosoft Azure Linux azl3
Open SourceOpen Source OpenSSL <3.3.7
SUSESUSE Linux
NCPNCP Secure Enterprise VPN Server <14.10 r32489
Red HatRed Hat OpenShift Container Platform
OracleOracle Linux
DebianDebian Linux
Open SourceOpen Source OpenSSL <1.1.1zg
NetAppNetApp FAS Baseboard Management Controller
IBMIBM QRadar SIEM
Open SourceOpen Source OpenSSL <3.0.20
NetAppNetApp AFF Baseboard Management Controller
AmazonAmazon Linux 2
IBMIBM MQ operator
GoogleGoogle Container-Optimized OS
Open SourceOpen Source OpenSSL <3.4.5
SUSESUSE openSUSE
RESFRESF Rocky Linux
Red HatRed Hat Enterprise Linux
IBMIBM AIX 7.3

…and 9 more

Timeline

  • Apr 7, 2026 CVE Published
  • Apr 7, 2026 PoC Published
  • May 18, 2026 EPSS Score
  • May 19, 2026 EPSS Score
  • May 20, 2026 EPSS Score
  • May 21, 2026 EPSS Score
  • May 22, 2026 EPSS Score
  • May 23, 2026 EPSS Score
  • May 24, 2026 EPSS Score
  • May 25, 2026 EPSS Score
  • May 26, 2026 EPSS Score
  • May 27, 2026 EPSS Score

References

…and 80 more

Open in Interactive Console →
$ Console Community · 100/wk Open console ›