CVE-2026-44756
A memory safety vulnerability exists in the Extended Passport Protocol (EPP) processing library. Under specific conditions, an unauthenticated attacker could exploit a crafted network request containing a malformed EPP header, potentially resulting in undefined behavior and abnormal program termination. Successful exploitation may have a high impact on the confidentiality, integrity, and availability of the application.
- Published Sep 8, 2026
- CVSS 10.0 critical
- 0.7% chance of exploitation in the next 30 days (EPSS)