OpenSSL Known Exploited Vulnerabilities

Evidence-backed KEV intelligence for OpenSSL products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.

Total KEVs

1

In CISA KEV

1

Beyond CISA KEV

0

Sensor Observed

0

Virtual Patch Available

0

OpenSSL KEVs Added by Year

Loading...

1 OpenSSL KEV added all time (primary attestation date).

Attested CVEs

CVE Confidence CISA KEV Added
CVE-2014-0160

The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows remote...

Confirmed In CISA 04 May 2022

Common Vulnerability Classes (CWE)

  • CWE-125 — Out-of-bounds Read 1

Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology