CVE-2026-26457

ccoap 77f55c4b466e99327c24ace8a2913d3ba7e2ccd5 contains a null pointer dereference vulnerability in the coap_dump_msg() function when processing COAP messages containing options with zero length.

  • Published Aug 27, 2026
  • CVSS 7.5 high
  • 0.5% chance of exploitation in the next 30 days (EPSS)

CVE-2026-26457 at the National Vulnerability Database