CVE-2026-50103
A NULL pointer dereference in the L2 GOOSE and R-GOOSE shared parser, which may allow a network-adjacent attacker to crash a subscribing app
CVSS
6.5
Medio
EPSS
0.3%
p19
KEV
—
Exploit Today
6
0-100
Publicado: 23 jul 2026 · Última mod.: 30 jul 2026 · CWE-228
0.2%EPSS · 30 días0.3%
2026-08-142026-09-10
A NULL pointer dereference in the L2 GOOSE and R-GOOSE shared parser, which may allow a network-adjacent attacker to crash a subscribing application by sending a crafted GOOSE frame containing a malformed TLV value.