PatchSiren

Nmap Project CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Nmap Project CVE published 2026-08-11

CVE-2026-72712

A denial of service vulnerability exists in Nmap versions up to and including 7.99. Remote attackers can crash the application by sending a crafted packet with a zero-length TCP option, causing an out-of-memory condition. This vulnerability can lead to potential application crashes, emphasizing the need for defenders to verify Nmap versions and apply patches promptly. The vulnerability is triggered by a m [truncated]