stunnel
Security Risk Profile
28
/100
lowSecurity Risk Score
Comprehensive risk assessment based on 17 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 12, 2001 to present
17
Total CVEs
5
Critical+High
0
Exploited
1
Unpatched
Threat Assessment
Avg CVSS
5.9
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
1
Critical/High
Risk Level
28/100
low
Severity Distribution
Critical
2High
3Medium
11Low
1Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
SSRF
2
2
Buffer Overflow
2
3
Code Injection
1
4
Race Condition
1
Most Affected Products
1. Stunnel Stunnel365
2. OpenSSL OpenSSL12
3. ubuntu/stunnel43
4. Openpkg Openpkg3
5. redhat/stunnel2
Recent Vulnerabilities
See more →CVE-2026-70367
CVSS 5.4medium
Stunnel: ssrf bypass in stunnel socks proxy via ipv4-mapped ipv6 loopback and unspecified addresses allows access to loopback-only services
4/26/2026🔧 No Patch
REDHAT-BUG-2462083
CVSS 4.0medium
4/26/2026🔧 No Patch
CVE-2026-70368
CVSS 6.5medium
Stunnel: stack-based out-of-bounds read/write in stunnel s_vlog via oversized log message
4/26/2026🔧 No Patch
REDHAT-BUG-2462029
CVSS 4.0medium
4/26/2026🔧 No Patch
CVE-2021-20230
CVSS 7.5high
2/4/2021
CVE-2015-3644
CVSS 5.8medium
5/14/2015
CVE-2014-0016
CVSS 4.3medium
3/4/2014🔧 No Patch
REDHAT-BUG-1072180
CVSS 4.0medium
3/4/2014🔧 No Patch
CVE-2013-1762
CVSS 6.6medium
3/8/2013🔧 No Patch
CVE-2011-2940
CVSS 9.3critical
8/19/2011
Monitor stunnel in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.