Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

NationalSecurityAgency — Vulnerabilities & Security Advisories 30

Browse all 30 CVE security advisories affecting NationalSecurityAgency. AI-powered Chinese analysis, POCs, and references for each vulnerability.

The NationalSecurityAgency is primarily responsible for signals intelligence and information assurance for the United States. Historically, common vulnerability classes in its systems include remote code execution, cross-site scripting, and privilege escalation, often stemming from complex software architectures. The agency maintains robust security protocols but has faced notable incidents, including the 2013 breach by Edward Snowden and alleged vulnerabilities in its own encryption tools. With 10 CVEs on record, these typically involve legacy systems or third-party integrations rather than core intelligence platforms. The agency's dual mandate of collecting foreign intelligence and securing national communications creates unique security challenges, balancing offensive capabilities with defensive imperatives.

Found 19 results / 30 Clear Filters
Top products by NationalSecurityAgency: ghidra emissary skills-service
CVE ID Title CVSS Severity Published
CVE-2026-100505 Ghidra 9.2 through 12.1.4 Heap Out-of-Bounds Read via StringManager — ghidra CWE-125 4.4 Medium 2026-09-26
CVE-2026-100504 Ghidra through 12.1.4 Stack-based Buffer Overflow via leftshift128 — ghidra CWE-787 7.0 High 2026-09-26
CVE-2026-100503 Ghidra through 12.1.4 Heap Use-After-Free in Decompiler — ghidra CWE-416 3.3 Low 2026-09-26
CVE-2026-96273 Ghidra before 12.1.4 Denial of Service via Unreleased Lock in OptionsDB — ghidra CWE-460 5.5 Medium 2026-09-23
CVE-2026-54389 Ghidra < 12.1.3 PDB Parser Uncontrolled Heap Growth DoS via AbstractPdb — ghidra CWE-770 5.5 Medium 2026-08-20
CVE-2026-52758 Ghidra < 12.1 - SQL Injection via Unescaped Filter Values in BSim Search — ghidra CWE-89 8.8 High 2026-06-10
CVE-2026-52757 Ghidra < 12.1 - Heap-use-after-free in HighVariable::merge() during decompilation — ghidra CWE-416 4.4 Medium 2026-06-10
CVE-2026-52756 Ghidra < 12.2 - Unauthenticated Path Traversal in Debugger ISF Server — ghidra CWE-22 4.8 Medium 2026-06-10
CVE-2026-52755 Ghidra < 12.0.4 - Path Traversal via Zip Slip in Theme Import — ghidra CWE-22 7.8 High 2026-06-10
CVE-2026-52754 Ghidra < 12.1 - Authentication Bypass via Null Signature in PKIAuthenticationModule — ghidra CWE-347 8.8 High 2026-06-10
CVE-2026-52753 Ghidra < 12.0.3 - Out-of-Memory in Rust Symbol Demangler via Malformed Symbol — ghidra CWE-789 5.5 Medium 2026-06-10
CVE-2026-52752 Ghidra < 12.0.2 - Path Traversal in Extension Installer via ZIP Entry Names — ghidra CWE-22 7.8 High 2026-06-10
CVE-2026-52751 Ghidra < 12.1 - Remote Code Execution via Unfiltered RMI Deserialization in Shared Project Connection — ghidra CWE-502 8.8 High 2026-06-10
CVE-2026-52750 Ghidra < 12.1- Command Injection via URL Annotation Click — ghidra CWE-88 7.8 High 2026-06-10
CVE-2026-49498 Ghidra 11.0 < 12.1 - SQL Injection in PostgreSQL Password Change via Unescaped Username — ghidra CWE-89 8.8 High 2026-06-10
CVE-2026-49497 Ghidra < 12.1 - Path Traversal via .gnu_debuglink in DWARF External Debug File Resolution — ghidra CWE-22 3.3 Low 2026-06-10
CVE-2026-49496 Ghidra < 12.1 - Heap-Use-After-Free in SleighBuilder::generatePointerAdd via Vector Reallocation — ghidra CWE-416 6.1 Medium 2026-06-10
CVE-2026-49495 Ghidra 10.2 < 12.1 - Denial of Service via Circular Reference in Mach-O Export Trie Parser — ghidra CWE-835 5.5 Medium 2026-06-10
CVE-2024-58350 Ghidra < 11.2 - Use After Free in Sleigh Backend via Static Initialization Order — ghidra CWE-758 2.9 Low 2026-06-10

This page lists every published CVE security advisory associated with NationalSecurityAgency. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.