Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-74885

openssl_encrypt versions before 1.4.0 contain a logging bug in restore_hidden_modules() that logs module counts after clearing, always showing zero restored modules and corrupting audit trails. Additionally, a race condition exists between module hiding and import hook installation where another thread could re-import blocked modules in multi-threaded environments.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 2.2%
CVSS Severity
CVSS v3 Score 3.6
Products affected by CVE-2026-74885


Contact Us

Shodan ® - All rights reserved