VendorsEspressifesp-idf5.2.6
Vulnerabilities

Espressif Esp-idf 5.2.6

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2025-68473
ESF-IDF Has Out-of-Bounds Read in ESP32 Bluetooth SDP Result Handling
Published 2025-12-26 · Analyzed
8.6EPSS 0.004
CVE-2026-25532
ESF-IDF is Vulnerable to WPS Enrollee Fragment Integer Underflow
Published 2026-02-04 · Analyzed
8.0EPSS 0.002
CVE-2025-68474
ESF-IDF Has Out-of-Bounds Write in ESP32 Bluetooth AVRCP Vendor Command Handling
Published 2025-12-26 · Analyzed
7.6EPSS 0.003
CVE-2026-45541
ESF-IDF: Remote Null Pointer Dereference in WebSocket Server
Published 2026-06-10 · Analyzed
7.5EPSS 0.004
CVE-2026-45542
ESF-IDF: Heap buffer overflow in protocomm Security2 over Bluetooth
Published 2026-06-10 · Analyzed
7.1EPSS 0.003
CVE-2026-25508
ESF-IDF Has Memory Safety Vulnerabilities in BLE Provisioning
Published 2026-02-04 · Analyzed
6.3EPSS 0.002
CVE-2026-25507
ESF-IDF Has Use-after-free Vulnerability in BLE Provisioning
Published 2026-02-04 · Analyzed
6.3EPSS 0.002
CVE-2026-46532
ESF-IDF: Heap Out-of-Bounds Read in Bluedroid AVRCP Target Parser
Published 2026-06-10 · Analyzed
4.6EPSS 0.002