Signalwire
15 CVEs tracked since 2021. Since Oct 2021, none of them reached CISA KEV.
Signalwire CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2021-10 | 6 | 0 |
| 2021-11 | null or fewer | |
| 2021-12 | null or fewer | |
| 2022-01 | null or fewer | |
| 2022-02 | null or fewer | |
| 2022-03 | null or fewer | |
| 2022-04 | null or fewer | |
| 2022-05 | null or fewer | |
| 2022-06 | null or fewer | |
| 2022-07 | null or fewer | |
| 2022-08 | null or fewer | |
| 2022-09 | null or fewer | |
| 2022-10 | null or fewer | |
| 2022-11 | null or fewer | |
| 2022-12 | null or fewer | |
| 2023-01 | null or fewer | |
| 2023-02 | null or fewer | |
| 2023-03 | null or fewer | |
| 2023-04 | null or fewer | |
| 2023-05 | null or fewer | |
| 2023-06 | null or fewer | |
| 2023-07 | null or fewer | |
| 2023-08 | null or fewer | |
| 2023-09 | null or fewer | |
| 2023-10 | null or fewer | |
| 2023-11 | null or fewer | |
| 2023-12 | null or fewer | |
| 2024-01 | null or fewer | |
| 2024-02 | null or fewer | |
| 2024-03 | null or fewer | |
| 2024-04 | null or fewer | |
| 2024-05 | null or fewer | |
| 2024-06 | null or fewer | |
| 2024-07 | null or fewer | |
| 2024-08 | null or fewer | |
| 2024-09 | null or fewer | |
| 2024-10 | null or fewer | |
| 2024-11 | null or fewer | |
| 2024-12 | null or fewer | |
| 2025-01 | null or fewer | |
| 2025-02 | null or fewer | |
| 2025-03 | null or fewer | |
| 2025-04 | null or fewer | |
| 2025-05 | null or fewer | |
| 2025-06 | null or fewer | |
| 2025-07 | null or fewer | |
| 2025-08 | null or fewer | |
| 2025-09 | null or fewer | |
| 2025-10 | null or fewer | |
| 2025-11 | null or fewer | |
| 2025-12 | null or fewer | |
| 2026-01 | null or fewer | |
| 2026-02 | null or fewer | |
| 2026-03 | null or fewer | |
| 2026-04 | null or fewer | |
| 2026-05 | null or fewer | |
| 2026-06 | 9 | 0 |
Products
The products that kept showing up in Signalwire's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Signalwire.
- CVE-2026-49846libks has path traversal in kws HTTP parser via URI segment overflow7.5
- CVE-2026-49848FreeSWITCH: Pre-authentication `userVariables` injection in `mod_verto`4.3
- CVE-2026-49847FreeSWITCH: Stack overflow in bundled cJSON parser via deeply nested JSON7.5
- CVE-2026-49843FreeSWITCH: Pre-authentication session eviction via attacker-chosen `sessid` in `mod_verto`5.3
- CVE-2026-49842FreeSWITCH: Pre-authentication bandwidth amplification via `mod_verto` speed-test frames7.5
- CVE-2026-49841FreeSWITCH: Pre-authentication heap buffer overflow in `mod_verto` HTTP POST body read9.8
- CVE-2026-49840FreeSWITCH: Pre-authentication heap buffer overflow in libesl `Content-Length` parsing9.1
- CVE-2026-49475FreeSWITCH: Out-of-bounds memory access in core STUN attribute parsing7.5
- CVE-2026-49472FreeSWITCH includes a vulnerable function, PREFIX(prologTok)() from libexpat5.3
- CVE-2026-45771Freeswitch Denial-of-Service in SIP PUBLISH Requests via XML Entity Expansion7.5
- CVE-2023-51443FreeSWITCH susceptible to Denial of Service via DTLS Hello packets during call initiation7.5
- CVE-2023-40019FreeSWITCH allows authorized users to cause a denial of service attack by sending re-INVITE with SDP containing duplicate codec names7.5
- CVE-2023-40018FreeSWITCH allows remote users to trigger out of bounds write by offering an ICE candidate with unknown component ID7.5
- CVE-2023-32307heap-over-flow and integer-overflow in sofia-sip7.5
- CVE-2023-22741heap-over-flow in stun_parse_attribute in sofia-sip9.8
The record
- Peak rank
- #81 in Oct 2021
- Busiest month shown
- Jun 2026, 9 CVEs
- Months with a KEV entry
- 0 since Oct 2021
- Monthly snapshots
- 2 since 2021