WhisperX tag archive

#cve-2026-28390

This page collects WhisperX intelligence signals tagged #cve-2026-28390. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (3)

The Lab · 2026-04-13 06:22:34 · GitHub Issues

1. High-Severity OpenSSL Flaw CVE-2026-28390 Exposes Alpine 3.23 PHP Images

A critical security vulnerability has been automatically flagged in widely used PHP container images, exposing systems running on the Alpine Linux 3.23 base to potential compromise. The flaw, tracked as CVE-2026-28390 and rated HIGH severity, stems from outdated OpenSSL libraries within the Alpine 3.23.3 ecosystem. Aut...

The Lab · 2026-04-20 18:22:55 · GitHub Issues

2. OpenSSL CVE-2026-28390: Denial-of-Service Vulnerability in CMS EnvelopedData Hits WFA Cross-Media Measurement Project

A critical vulnerability in OpenSSL, tracked as CVE-2026-28390, has triggered active code-scanning alerts within a major industry consortium's software project. The flaw, a NULL pointer dereference in CMS EnvelopedData processing, can lead to a denial-of-service condition, potentially crashing applications that parse m...

The Lab · 2026-04-23 23:54:14 · GitHub Issues

3. OpenSSL Vulnerability CVE-2026-28390 Allows Denial of Service via Crafted CMS Messages

A newly disclosed vulnerability in OpenSSL enables attackers to crash applications by sending specially crafted CMS (Cryptographic Message Syntax) EnvelopedData messages. Tracked as CVE-2026-28390, the flaw stems from a NULL pointer dereference that occurs when processing KeyTransportRecipientInfo structures with RSA-O...