[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2019-9494":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T08:53:30.047Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":151,"aliases":152,"duplicate_of":9,"upstream":153,"downstream":154,"duplicates":177,"related":178,"reserved_at":9,"published_at":188,"modified_at":189,"state":190,"summary":191,"references_raw":200,"kevs":249,"epss":250,"epss_history":253,"metrics":517,"affected":528},"CVE-2019-9494","The implementations of SAE in hostapd and wpa_supplicant are vulnerable to side channel attacks as a result of observable timing differences and cache access patterns. An attacker may be able to gain leaked information from a side channel attack that can be used for full password recovery. Both hostapd with SAE support and wpa_supplicant with SAE support prior to and including version 2.7 are affected.",null,[11,23,87],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-203","Observable Discrepancy","The product behaves differently or sends different responses under different circumstances in a way that is observable to an unauthorized actor.","weakness","Incomplete","Base",[19],{"id":20,"name":21,"techniques":22},"CAPEC-189","Black Box Reverse Engineering",[],{"_key":24,"id":24,"name":25,"description":26,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":27},"CWE-208","Observable Timing Discrepancy","Two separate operations in a product require different amounts of time to complete, in a way that is observable to an actor and reveals security-relevant information about the state of the product, such as whether a particular operation was successful or not.",[28,32,44],{"id":29,"name":30,"techniques":31},"CAPEC-462","Cross-Domain Search Timing",[],{"id":33,"name":34,"techniques":35},"CAPEC-541","Application Fingerprinting",[36],{"id":37,"name":38,"tactics":39,"countermeasures":43},"T1592.002","Software",[40],{"id":41,"name":42},"TA0043","Reconnaissance",[],{"id":45,"name":46,"techniques":47},"CAPEC-580","System Footprinting",[48],{"id":49,"name":50,"tactics":51,"countermeasures":55},"T1082","System Information Discovery",[52],{"id":53,"name":54},"TA0102","Discovery",[56,61,65,70,75,79,83],{"id":57,"name":58,"tactic":59},"D3-SCA","System Call Analysis",{"name":60},"Detect",{"id":62,"name":63,"tactic":64},"D3-PSA","Process Spawn Analysis",{"name":60},{"id":66,"name":67,"tactic":68},"D3-DE","Decoy Environment",{"name":69},"Deceive",{"id":71,"name":72,"tactic":73},"D3-SCF","System Call Filtering",{"name":74},"Isolate",{"id":76,"name":77,"tactic":78},"D3-EAL","Executable Allowlisting",{"name":74},{"id":80,"name":81,"tactic":82},"D3-EDL","Executable Denylisting",{"name":74},{"id":84,"name":85,"tactic":86},"D3-HBPI","Hardware-based Process Isolation",{"name":74},{"_key":88,"id":88,"name":89,"description":90,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":91},"CWE-524","Use of Cache Containing Sensitive Information","The code uses a cache that contains sensitive information, but the cache can be read by an actor outside of the intended control sphere.",[92],{"id":93,"name":94,"techniques":95},"CAPEC-204","Lifting Sensitive Data Embedded in Cache",[96],{"id":97,"name":98,"tactics":99,"countermeasures":103},"T1005","Data from Local System",[100],{"id":101,"name":102},"TA0100","Collection",[104,108,112,117,121,126,131,135,139,143,147],{"id":105,"name":106,"tactic":107},"D3-FA","File Analysis",{"name":60},{"id":109,"name":110,"tactic":111},"D3-FIM","File Integrity Monitoring",{"name":60},{"id":113,"name":114,"tactic":115},"D3-FEV","File Eviction",{"name":116},"Evict",{"id":118,"name":119,"tactic":120},"D3-DF","Decoy File",{"name":69},{"id":122,"name":123,"tactic":124},"D3-FE","File Encryption",{"name":125},"Harden",{"id":127,"name":128,"tactic":129},"D3-RF","Restore File",{"name":130},"Restore",{"id":132,"name":133,"tactic":134},"D3-CF","Content Filtering",{"name":74},{"id":136,"name":137,"tactic":138},"D3-LFP","Local File Permissions",{"name":74},{"id":140,"name":141,"tactic":142},"D3-RFAM","Remote File Access Mediation",{"name":74},{"id":144,"name":145,"tactic":146},"D3-CQ","Content Quarantine",{"name":74},{"id":148,"name":149,"tactic":150},"D3-CM","Content Modification",{"name":74},[],[],[],[155,157,159,161,163,165,167,169,171,173,175],{"_key":156},"ALPINE-CVE-2019-9494",{"_key":158},"SUSE-SU-2020:3380-1",{"_key":160},"SUSE-SU-2020:3424-1",{"_key":162},"SUSE-SU-2022:1853-1",{"_key":164},"OPENSUSE-SU-2020:0222-1",{"_key":166},"OPENSUSE-SU-2020:2053-1",{"_key":168},"OPENSUSE-SU-2020:2059-1",{"_key":170},"OPENSUSE-SU-2024:10846-1",{"_key":172},"OPENSUSE-SU-2024:11515-1",{"_key":174},"MGASA-2019-0229",{"_key":176},"DEBIAN-CVE-2019-9494",[],[179,180,181,182,183,184,185,186,187],{"_key":158},{"_key":160},{"_key":162},{"_key":164},{"_key":166},{"_key":168},{"_key":170},{"_key":172},{"_key":174},"2019-04-17T13:31:08.000Z","2024-08-04T21:54:44.172Z","Modified",{"cisa_kev":192,"cisa_ransomware":192,"cisa_vendor":9,"epss_severity":193,"epss_score":194,"severity":195,"severity_score":196,"severity_version":197,"severity_source":198,"severity_vector":199,"severity_status":190},false,"low",0.01518,"medium",5.9,"v3.1","nvd","CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N",[201,209,214,219,223,227,232,238,244],{"url":202,"sources":203,"tags":205},"https://w1.fi/security/2019-1/",[204,198],"cve.org",[206,207,208],"X Refsource CONFIRM","Patch","Vendor Advisory",{"url":210,"sources":211,"tags":212},"https://www.synology.com/security/advisory/Synology_SA_19_16",[204,198],[206,213],"Third Party Advisory",{"url":215,"sources":216,"tags":217},"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/56OBBOJJSKRTDGEXZOVFSTP4HDSDBLAE/",[204,198],[208,218],"X Refsource FEDORA",{"url":220,"sources":221,"tags":222},"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TDOZGR3T7FVO5JSZWK2QPR7AOFIEJTIZ/",[204,198],[208,218],{"url":224,"sources":225,"tags":226},"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVMJOFEYBGXZLFF5IOLW67SSOPKFEJP3/",[204,198],[208,218],{"url":228,"sources":229,"tags":230},"https://security.FreeBSD.org/advisories/FreeBSD-SA-19:03.wpa.asc",[204,198],[208,231,213],"X Refsource FREEBSD",{"url":233,"sources":234,"tags":235},"https://seclists.org/bugtraq/2019/May/40",[204,198],[236,237,213],"Mailing List","X Refsource BUGTRAQ",{"url":239,"sources":240,"tags":241},"http://packetstormsecurity.com/files/152914/FreeBSD-Security-Advisory-FreeBSD-SA-19-03.wpa.html",[204,198],[242,213,243],"X Refsource MISC","VDB Entry",{"url":245,"sources":246,"tags":247},"http://lists.opensuse.org/opensuse-security-announce/2020-02/msg00021.html",[204,198],[208,248,236,213],"X Refsource SUSE",[],{"date":251,"score":194,"percentile":252},"2026-06-03",0.81558,[254,258,261,264,267,270,273,276,279,282,285,288,291,293,296,300,302,305,308,311,314,317,320,323,326,329,331,334,337,340,343,346,349,352,354,357,360,363,366,369,372,376,379,382,385,388,391,393,396,399,401,404,407,410,414,417,420,423,426,429,432,435,437,439,442,444,447,450,453,456,459,462,464,466,469,472,476,479,483,486,489,491,494,497,499,502,505,507,510,514],{"date":255,"score":256,"percentile":257},"2025-11-04",0.01538,0.80727,{"date":259,"score":256,"percentile":260},"2025-11-05",0.80728,{"date":262,"score":256,"percentile":263},"2025-11-06",0.80729,{"date":265,"score":256,"percentile":266},"2025-11-07",0.8074,{"date":268,"score":256,"percentile":269},"2025-11-08",0.80747,{"date":271,"score":256,"percentile":272},"2025-11-09",0.80745,{"date":274,"score":256,"percentile":275},"2025-11-10",0.80739,{"date":277,"score":256,"percentile":278},"2025-11-11",0.80741,{"date":280,"score":256,"percentile":281},"2025-11-12",0.80754,{"date":283,"score":256,"percentile":284},"2025-11-13",0.8076,{"date":286,"score":256,"percentile":287},"2025-11-14",0.80765,{"date":289,"score":256,"percentile":290},"2025-11-15",0.80761,{"date":292,"score":256,"percentile":284},"2025-11-16",{"date":294,"score":256,"percentile":295},"2025-11-17",0.80757,{"date":297,"score":298,"percentile":299},"2025-11-18",0.02066,0.82501,{"date":301,"score":298,"percentile":299},"2025-11-19",{"date":303,"score":298,"percentile":304},"2025-11-20",0.82505,{"date":306,"score":256,"percentile":307},"2025-11-21",0.80777,{"date":309,"score":256,"percentile":310},"2025-11-22",0.80778,{"date":312,"score":256,"percentile":313},"2025-11-23",0.80768,{"date":315,"score":256,"percentile":316},"2025-11-24",0.8077,{"date":318,"score":256,"percentile":319},"2025-11-25",0.80773,{"date":321,"score":256,"percentile":322},"2025-11-26",0.80775,{"date":324,"score":256,"percentile":325},"2025-11-27",0.80779,{"date":327,"score":256,"percentile":328},"2025-11-28",0.80772,{"date":330,"score":256,"percentile":310},"2025-11-29",{"date":332,"score":256,"percentile":333},"2025-11-30",0.80783,{"date":335,"score":256,"percentile":336},"2025-12-01",0.80869,{"date":338,"score":256,"percentile":339},"2025-12-02",0.80874,{"date":341,"score":256,"percentile":342},"2025-12-03",0.80873,{"date":344,"score":256,"percentile":345},"2025-12-04",0.80787,{"date":347,"score":256,"percentile":348},"2025-12-05",0.80794,{"date":350,"score":256,"percentile":351},"2025-12-06",0.80795,{"date":353,"score":256,"percentile":351},"2025-12-07",{"date":355,"score":256,"percentile":356},"2025-12-08",0.80798,{"date":358,"score":256,"percentile":359},"2025-12-09",0.80811,{"date":361,"score":256,"percentile":362},"2025-12-10",0.80838,{"date":364,"score":256,"percentile":365},"2025-12-11",0.80849,{"date":367,"score":256,"percentile":368},"2025-12-12",0.80863,{"date":370,"score":256,"percentile":371},"2025-12-13",0.80862,{"date":373,"score":374,"percentile":375},"2025-12-14",0.01473,0.8044,{"date":377,"score":374,"percentile":378},"2025-12-15",0.80438,{"date":380,"score":374,"percentile":381},"2025-12-16",0.80449,{"date":383,"score":374,"percentile":384},"2025-12-17",0.80458,{"date":386,"score":374,"percentile":387},"2025-12-18",0.80478,{"date":389,"score":374,"percentile":390},"2025-12-19",0.80488,{"date":392,"score":374,"percentile":387},"2025-12-20",{"date":394,"score":374,"percentile":395},"2025-12-21",0.80472,{"date":397,"score":374,"percentile":398},"2025-12-22",0.80469,{"date":400,"score":374,"percentile":395},"2025-12-23",{"date":402,"score":374,"percentile":403},"2025-12-24",0.80491,{"date":405,"score":374,"percentile":406},"2025-12-25",0.80509,{"date":408,"score":374,"percentile":409},"2025-12-26",0.80511,{"date":411,"score":412,"percentile":413},"2025-12-27",0.01508,0.80805,{"date":415,"score":374,"percentile":416},"2025-12-28",0.80501,{"date":418,"score":374,"percentile":419},"2025-12-29",0.805,{"date":421,"score":374,"percentile":422},"2025-12-30",0.80506,{"date":424,"score":374,"percentile":425},"2025-12-31",0.80521,{"date":427,"score":374,"percentile":428},"2026-01-01",0.80603,{"date":430,"score":374,"percentile":431},"2026-01-02",0.806,{"date":433,"score":374,"percentile":434},"2026-01-03",0.80596,{"date":436,"score":374,"percentile":422},"2026-01-04",{"date":438,"score":374,"percentile":419},"2026-01-05",{"date":440,"score":374,"percentile":441},"2026-01-06",0.80504,{"date":443,"score":374,"percentile":422},"2026-01-07",{"date":445,"score":374,"percentile":446},"2026-01-08",0.80517,{"date":448,"score":374,"percentile":449},"2026-01-09",0.80518,{"date":451,"score":374,"percentile":452},"2026-01-10",0.80519,{"date":454,"score":374,"percentile":455},"2026-01-11",0.80512,{"date":457,"score":374,"percentile":458},"2026-01-12",0.80502,{"date":460,"score":374,"percentile":461},"2026-01-13",0.80499,{"date":463,"score":374,"percentile":425},"2026-01-14",{"date":465,"score":374,"percentile":425},"2026-01-15",{"date":467,"score":374,"percentile":468},"2026-01-16",0.80533,{"date":470,"score":374,"percentile":471},"2026-01-17",0.80539,{"date":473,"score":474,"percentile":475},"2026-01-18",0.01269,0.79054,{"date":477,"score":474,"percentile":478},"2026-01-19",0.79047,{"date":480,"score":481,"percentile":482},"2026-01-20",0.01514,0.80797,{"date":484,"score":481,"percentile":485},"2026-01-21",0.80804,{"date":487,"score":481,"percentile":488},"2026-01-22",0.80813,{"date":490,"score":481,"percentile":362},"2026-01-23",{"date":492,"score":481,"percentile":493},"2026-01-24",0.80846,{"date":495,"score":481,"percentile":496},"2026-01-25",0.80839,{"date":498,"score":481,"percentile":362},"2026-01-26",{"date":500,"score":481,"percentile":501},"2026-01-27",0.80843,{"date":503,"score":481,"percentile":504},"2026-01-28",0.80841,{"date":506,"score":481,"percentile":496},"2026-01-29",{"date":508,"score":481,"percentile":509},"2026-01-30",0.8084,{"date":511,"score":512,"percentile":513},"2026-01-31",0.01485,0.80657,{"date":515,"score":512,"percentile":516},"2026-02-01",0.80744,[518],{"source":198,"cvss_v2_0":519,"cvss_v3_0":9,"cvss_v3_1":524,"cvss_v4_0":9},{"baseScore":520,"baseSeverity":9,"vectorString":521,"impactScore":522,"exploitabilityScore":523},4.3,"AV:N/AC:M/Au:N/C:P/I:N/A:N",2.9,8.6,{"baseScore":196,"baseSeverity":525,"vectorString":199,"impactScore":526,"exploitabilityScore":527},"MEDIUM",6,5.6,[529,541,572,582,587,594,603,611,616,623],{"ecosystem":9,"name":530,"vendor":531,"product":530,"cpe_part":532,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":533},"fedora","fedoraproject","o",[534,537,539],{"version":535,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"28","cpe",{"version":538,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"29",{"version":540,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"30",{"ecosystem":9,"name":542,"vendor":542,"product":542,"cpe_part":532,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":543},"freebsd",[544,546,548,550,552,554,556,558,560,562,564,566,568,570],{"version":545,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.2",{"version":547,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.2:p2",{"version":549,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.2:p3",{"version":551,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.2:p4",{"version":553,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.2:p5",{"version":555,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.2:p6",{"version":557,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.2:p7",{"version":559,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.2:p8",{"version":561,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.2:p9",{"version":563,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.2:rc3",{"version":565,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"12.0",{"version":567,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"12.0:p1",{"version":569,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"12.0:p2",{"version":571,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"12.0:p3",{"ecosystem":9,"name":573,"vendor":574,"product":575,"cpe_part":576,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":577},"backports sle","opensuse","backports_sle","a",[578,580],{"version":579,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.0",{"version":581,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.0:sp1",{"ecosystem":9,"name":583,"vendor":574,"product":583,"cpe_part":532,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":584},"leap",[585],{"version":586,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.1",{"ecosystem":9,"name":588,"vendor":589,"product":590,"cpe_part":576,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":591},"radius server","synology","radius_server",[592],{"version":593,"is_range":192,"range_type":536,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.0",{"ecosystem":9,"name":595,"vendor":589,"product":596,"cpe_part":576,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":597},"router manager","router_manager",[598],{"version":599,"is_range":600,"range_type":536,"version_start":9,"version_start_type":9,"version_end":601,"version_end_type":602,"fixed_in":9},"lt1.2.3-8087",true,"1.2.3-8087","excluding",{"ecosystem":9,"name":604,"vendor":605,"product":604,"cpe_part":576,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":606},"hostapd","w1.fi",[607],{"version":608,"is_range":600,"range_type":536,"version_start":9,"version_start_type":9,"version_end":609,"version_end_type":610,"fixed_in":9},"lte2.7","2.7","including",{"ecosystem":9,"name":612,"vendor":605,"product":613,"cpe_part":576,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":614},"wpa supplicant","wpa_supplicant",[615],{"version":608,"is_range":600,"range_type":536,"version_start":9,"version_start_type":9,"version_end":609,"version_end_type":610,"fixed_in":9},{"ecosystem":9,"name":617,"vendor":618,"product":619,"cpe_part":576,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":620},"hostapd with SAE support","wi-fi alliance","hostapd with sae support",[621],{"version":622,"is_range":600,"range_type":204,"version_start":609,"version_start_type":610,"version_end":609,"version_end_type":610,"fixed_in":9},">= 2.7, \u003C= 2.7",{"ecosystem":9,"name":624,"vendor":618,"product":625,"cpe_part":576,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":626},"wpa_supplicant with SAE support","wpa_supplicant with sae support",[627],{"version":622,"is_range":600,"range_type":204,"version_start":609,"version_start_type":610,"version_end":609,"version_end_type":610,"fixed_in":9}]