VendorsH2Oquiclyany version
Vulnerabilities

H2O Quicly any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2026-44436
Quicly is vulnerable to connection state corruption
Published 2026-07-16 · Analyzed
7.5EPSS 0.005
CVE-2026-44435
Quicly: Remote Denial of Service via assertion failure when CRYPTO stream handshake data exceeds 32KB
Published 2026-07-16 · Analyzed
7.5EPSS 0.005
CVE-2025-61684
Quicly has assertion failures
Published 2026-01-19 · Analyzed
7.5EPSS 0.004
CVE-2026-44433
Quicly is vulnerable to memory exhaustion
Published 2026-07-16 · Analyzed
7.5EPSS 0.003
CVE-2026-44434
Quicly is vulnerable to stateless reset injection
Published 2026-07-16 · Analyzed
5.3EPSS 0.002