Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

MidnightBSD — Vulnerabilities & Security Advisories 12

Browse all 12 CVE security advisories affecting MidnightBSD. AI-powered Chinese analysis, POCs, and references for each vulnerability.

This is the vulnerability aggregation page for the vendor MidnightBSD. The page collects historical security advisories, patch notes, and associated weakness classifications reported against this specific vendor, covering vulnerabilities documented from the early 2010s through recent releases. Here you can track the vendor’s advisory history, understand recurring weakness classes such as memory corruption or input validation errors, and review the vulnerability timeline for MidnightBSD products to identify patterns in their security posture.

Found 12 results / 12 Clear Filters
Top products by MidnightBSD: mport
CVE ID Title CVSS Severity Published
CVE-2026-54579 mport mirror-selection ping accepts insufficiently validated ICMP replies — mport CWE-125 2.3 Low 2026-09-17
CVE-2026-54576 mport package installation has symlink TOCTOU in chown and chmod handling — mport CWE-59 5.8 Medium 2026-09-17
CVE-2026-54587 mport directory asset installation is vulnerable to symlink and path traversal races — mport CWE-59 5.8 Medium 2026-09-17
CVE-2026-54575 mport package fetch and clean paths are vulnerable to TOCTOU filesystem races — mport CWE-78 5.8 Medium 2026-09-17
CVE-2026-54578 mport verify can compare stale checksum data after hashing failures — mport CWE-354 2.0 Low 2026-09-17
CVE-2026-54586 mport permits repository and package mirror fetches over insecure transport — mport CWE-319 6.0 Medium 2026-09-17
CVE-2026-54585 mport sample file handling can write outside the configured root — mport CWE-22 6.0 Medium 2026-09-17
CVE-2026-54580 mport index decompression can leave partial or corrupt index data after zstd failures — mport CWE-354 8.3 High 2026-09-17
CVE-2026-54582 mport package installation can overwrite existing unmanaged or differently owned files — mport CWE-73 6.0 Medium 2026-09-17
CVE-2026-54577 mport audit can inspect the wrong package when options are present — mport CWE-20 2.0 Low 2026-09-17
CVE-2026-54583 mport package bundle downloads allow unsafe destination filenames — mport CWE-22 8.3 High 2026-09-17
CVE-2026-54581 mport bootstrap index fetch can continue after hash verification failure — mport CWE-345 8.3 High 2026-09-17

This page lists every published CVE security advisory associated with MidnightBSD. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.