wolfSSL
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 187 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from December 30, 2009 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →wolfSSH server accepts server-to-client DH group exchange messages from an unauthenticated client, causing pre-authentication primality-test CPU exhaustion and key exchange role confusion
wstrncat() unsigned integer underflow leads to an off-by-one null write in wolfSSH on non-Windows platforms
wolfSSHd on Windows race condition leading to logon token reused across connections
wolfSSH SSH client accepts unsolicited forwarded-tcpip channel opens without an authorization check
wolfSSH ECDSA host key curve not validated against negotiated algorithm
Heap use-after-free on read during bidirectional (D)TLS shutdown
OCSP stapling v2 multi accepts non-CA chain certificates as issuers
NameConstraints not enforced across unconstrained intermediate CA
Subject CN name-constraint check bypassed when non-DNS SAN present
Monitor wolfSSL in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.