Nimble
This hub aggregates every CVE we track for Nimble, a product in the databases space. Use it to gauge the current risk picture and drill into individual advisories.
Databasesweb app
10
CVEs tracked
0
Critical
6
High
0
In CISA KEV
Severity distribution
HIGH6MEDIUM3LOW1
Monthly trend
0
0
0
4
0
0
0
0
0
0
0
0
0
0
0
0
0
4
0
0
0
0
0
0
2024-082026-07
Latest CVEs
The 10 most recently published vulnerabilities affecting Nimble.
- CVE-2025-52435Apache Mynewt NimBLE: Invalid error handling in pause encryption procedure in NimBLE controller7.5
- CVE-2025-53470Apache Mynewt NimBLE: Out-of-Bounds Write Vulnerability in NimBLE HCI H4 driver3.1
- CVE-2025-53477Apache Mynewt NimBLE: NULL Pointer Dereference in NimBLE host HCI layer7.5
- CVE-2025-62235Apache Mynewt NimBLE: Incorrect handling of SMP Security Request could lead to undesirable pairing8.1
- CVE-2024-51569Apache NimBLE: Lack of input sanitization leading to out-of-bound reads in Number of Completed Packets HCI event handler7.5
- CVE-2024-47250Apache NimBLE: Lack of input validation in HCI advertising report could lead to potential out-of-bound access5.0
- CVE-2024-47249Apache NimBLE: Lack of input sanitization leading to out-of-bound reads in multiple advertisement handler5.0
- CVE-2024-47248Apache NimBLE: Buffer overflow in NimBLE MESH Bluetooth stack6.3
- CVE-2024-24746Apache NimBLE: Denial of service in NimBLE Bluetooth stack7.5
- CVE-2021-21374Nimble fails to validate certificates due to insecure httpClient defaults8.1
Product normalization is registry-driven with AI assist and human review. How it works