Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CWE-476

NULL Pointer Dereference

The product dereferences a pointer that it expects to be valid but is NULL.

5,444
Assigned CVEs
16th
Commonality Rank
6.2
Avg CVSS
0.0%
In CISA KEV

Volume and Severity of Assigned CVEs Over Time

Volume of CVEs assigned to CWE-476 and their average CVSS base score over time.

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 4, 1998
27 years ago
Most Recent CVE
Jul 23, 2026
1 day ago

Top CVEs Assigned This CWE

Top CVEs that have been assigned this CWE. A single CVE can have multiple CWE assignments, though many have just one.

5,444 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2009-1386MEDIUM
ssl/s3_pkt.c in OpenSSL before 0.9.8i allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a DTLS ChangeCipherSpec packet that occur
Jun 4, 20095.077NOYES
CVE-2006-6565MEDIUM
FileZilla Server before 0.9.22 allows remote attackers to cause a denial of service (crash) via a wildcard argument to the (1) LIST or (2) NLST commands, which results in a NULL po
Dec 15, 20064.077NOYES
CVE-2023-21758HIGH
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
Jan 10, 20237.575NONO
CVE-2023-21547HIGH
Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability
Jan 10, 20237.572NONO
CVE-2021-44224HIGH
A crafted URI sent to httpd configured as a forward proxy (ProxyRequests on) can cause a crash (NULL pointer dereference) or, for configurations mixing forward and reverse proxy de
Dec 20, 20218.272NONO
CVE-2016-0742HIGH
The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (invalid pointer dereference and worker process crash) via a crafted
Feb 15, 20167.570NONO
CVE-2026-21525MEDIUM
Null pointer dereference in Windows Remote Access Connection Manager allows an unauthorized attacker to deny service locally.
Feb 10, 20266.267YESNO
CVE-2017-3730HIGH
In OpenSSL 1.1.0 before 1.1.0d, if a malicious server supplies bad parameters for a DHE or ECDHE key exchange then this can result in the client attempting to dereference a NULL po
May 4, 20177.567NOYES
CVE-2018-8011HIGH
By specially crafting HTTP requests, the mod_md challenge handler would dereference a NULL pointer and cause the child process to segfault. This could be used to DoS the server. Fi
Jul 18, 20187.564NOYES
CVE-2021-34798HIGH
Malformed requests may cause the server to dereference a NULL pointer. This issue affects Apache HTTP Server 2.4.48 and earlier.
Sep 16, 20217.561NONO
View all 5,444 CVEs →

CVE Severity & Scoring

This CWEGlobal (All CVEs)
0.0-0.9
1.0-1.9
2.0-2.9
3.0-3.9
10%
4.0-4.9
55%
19%
5.0-5.9
11%
16%
6.0-6.9
24%
26%
7.0-7.9
11%
8.0-8.9
14%
9.0-10.0
unknown
CVSS Score Range

Exploit Exposure

Exploit activity across CVEs assigned to this CWE, including CVEs that carry other CWE assignments.

CISA KEV
1 CVE
0.0% of CVEs· 79th percentile
Metasploit
5 CVEs
0.1% of CVEs· 78th percentile
Nuclei
2 CVEs
0.0% of CVEs· 76th percentile
ExploitDB
55 CVEs
1.0% of CVEs· 81st percentile

Social Chatter

Social posts that mention CVE IDs assigned to this CWE. This is assigned-CVE activity, not mentions of the CWE label itself.

Media Mentions

Media articles that mention CVE IDs assigned to this CWE. This is assigned-CVE coverage, not mentions of the CWE label itself.

Top Affected Vendors

Top Affected Products