Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

sni — Vulnerabilities & Security Advisories 3

Browse all 3 CVE security advisories affecting sni. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SNI (Server Name Indication) is a TLS extension designed to enable multiple HTTPS services on a single IP address by specifying the hostname during the handshake. Historically, SNI implementations have been vulnerable to classes including remote code execution, cross-site scripting, and privilege escalation due to parsing flaws and buffer overflows. Notable security characteristics include its susceptibility to downgrade attacks and information leakage through improper validation. While no major incidents have been widely documented, the three CVEs associated with SNI highlight risks in server-side implementations, particularly in web servers and reverse proxies that fail to properly handle malformed SNI data, potentially exposing systems to compromise.

Top products by sni: Thruk

This page lists every published CVE security advisory associated with sni. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.