Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Unclassified MEDIUM 5.6
CVE-2026-1425

A security flaw has been discovered in pymumu SmartDNS up to 47.1. This vulnerability affects the function _dns_decode_rr_head/_dns_decode_SVCB_HTTPS…

Patch available
Fix from $1,600 2026-01-26
Ac23 Firmware CRITICAL 9.8
CVE-2026-1420

A flaw has been found in Tenda AC23 16.03.07.52. This impacts an unknown function of the file /goform/WifiExtraSet. This manipulation of the argument…

Mitigation only
Fix from $2,300 2026-01-26
Gpac HIGH 7.8
CVE-2026-1418

A security vulnerability has been detected in GPAC up to 2.4.0. This affects the function gf_text_import_srt_bifs of the file src/scene_manager/text_…

Fix: after 2.4.0
Fix from $1,950 2026-01-26
Sentencepiece HIGH 7.8
CVE-2026-1260

Invalid memory access in Sentencepiece versions less than 0.2.1 when using a vulnerable model file, which is not created in the normal training proce…

Fix: 0.2.1+
Fix from $1,950 2026-01-22
Ax1803 Firmware HIGH 8.8
CVE-2026-1329

A flaw has been found in Tenda AX1803 1.0.0.1. The affected element is the function fromGetWifiGuestBasic of the file /goform/WifiGuestSet. Executing…

No fix yet
Fix from $1,950 2026-01-22
Nr1800x Firmware HIGH 8.8
CVE-2026-1328

A vulnerability was detected in Totolink NR1800X 9.1.0u.6279_B20210910. Impacted is the function setWizardCfg of the file /cgi-bin/cstecgi.cgi of the…

No fix yet
Fix from $1,950 2026-01-22
810 Firmware CRITICAL 9.8
CVE-2026-1162

A flaw has been found in UTT HiPER 810 1.7.4-141218. The impacted element is the function strcpy of the file /goform/setSysAdm. This manipulation of …

Mitigation only
Fix from $2,300 2026-01-19
Lr350 Firmware HIGH 8.8
CVE-2026-1158

A security flaw has been discovered in Totolink LR350 9.3.5u.6369_B20220309. This vulnerability affects the function setWizardCfg of the file /cgi-bi…

No fix yet
Fix from $1,950 2026-01-19
Lr350 Firmware HIGH 8.8
CVE-2026-1157

A vulnerability was identified in Totolink LR350 9.3.5u.6369_B20220309. This affects the function setWiFiEasyCfg of the file /cgi-bin/cstecgi.cgi. Su…

No fix yet
Fix from $1,950 2026-01-19
Lr350 Firmware HIGH 8.8
CVE-2026-1156

A vulnerability was determined in Totolink LR350 9.3.5u.6369_B20220309. Affected by this issue is the function setWiFiBasicCfg of the file /cgi-bin/c…

No fix yet
Fix from $1,950 2026-01-19
Lr350 Firmware HIGH 8.8
CVE-2026-1155

A vulnerability was found in Totolink LR350 9.3.5u.6369_B20220309. Affected by this vulnerability is the function setWiFiEasyGuestCfg of the file /cg…

No fix yet
Fix from $1,950 2026-01-19
Quickjs HIGH 8.8
CVE-2026-1145

A flaw has been found in quickjs-ng quickjs up to 0.11.0. Affected by this vulnerability is the function js_typed_array_constructor_ta of the file qu…

Fix: after 0.11.0
Fix from $1,950 2026-01-19
Quickjs HIGH 8.8
CVE-2026-1144

A vulnerability was detected in quickjs-ng quickjs up to 0.11.0. Affected is an unknown function of the file quickjs.c of the component Atomics Ops H…

Fix: after 0.11.0
Fix from $1,950 2026-01-19
A3700r Firmware HIGH 8.8
CVE-2026-1143

A weakness has been identified in TOTOLINK A3700R 9.1.2u.5822_B20200513. This affects the function setWiFiEasyGuestCfg of the file /cgi-bin/cstecgi.c…

No fix yet
Fix from $1,950 2026-01-19
520w Firmware HIGH 8.8
CVE-2026-1140

A vulnerability was found in UTT 进取 520W 1.7.7-180627. This issue affects the function strcpy of the file /goform/ConfigExceptAli. The manipulation…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-19
520w Firmware HIGH 8.8
CVE-2026-1138

A flaw has been found in UTT 进取 520W 1.7.7-180627. This affects the function strcpy of the file /goform/ConfigExceptQQ. Executing a manipulation ca…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-19
520w Firmware HIGH 8.8
CVE-2026-1139

A vulnerability has been found in UTT 进取 520W 1.7.7-180627. This vulnerability affects the function strcpy of the file /goform/ConfigExceptMSN. The…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-19
520w Firmware HIGH 8.8
CVE-2026-1137

A vulnerability was detected in UTT 进取 520W 1.7.7-180627. Affected by this issue is the function strcpy of the file /goform/formWebAuthGlobalConfig…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-19
Assimp HIGH 7.8
CVE-2025-15538

A security vulnerability has been detected in Open Asset Import Library Assimp up to 6.0.2. Affected by this vulnerability is the function Assimp::LW…

Fix: after 6.0.2
Fix from $1,950 2026-01-18
Mapnik MEDIUM 5.5
CVE-2025-15537

A security vulnerability has been detected in Mapnik up to 4.2.0. This issue affects the function mapnik::dbf_file::string_value of the file plugins/…

Fix: after 4.2.0
Fix from $1,600 2026-01-18
Open Chinese Convert MEDIUM 5.5
CVE-2025-15536

A weakness has been identified in BYVoid OpenCC up to 1.1.9. This vulnerability affects the function opencc::MaxMatchSegmentation of the file src/Max…

Fix: after 1.1.9
Fix from $1,600 2026-01-18
Librtsp HIGH 7.8
CVE-2026-1110

A flaw has been found in cijliu librtsp up to 2ec1a81ad65280568a0c7c16420d7c10fde13b04. This affects the function rtsp_parse_method. This manipulatio…

Fix: after 2021-03-14
Fix from $1,950 2026-01-18
Raylib HIGH 7.8
CVE-2025-15533

A vulnerability was determined in raysan5 raylib up to 909f040. Affected by this vulnerability is the function GenImageFontAtlas of the file src/rtex…

Fix: 2026-01-01+
Fix from $1,950 2026-01-18
Librtsp HIGH 7.8
CVE-2026-1109

A vulnerability was detected in cijliu librtsp up to 2ec1a81ad65280568a0c7c16420d7c10fde13b04. The impacted element is the function rtsp_parse_reques…

Fix: after 2021-03-14
Fix from $1,950 2026-01-18
Librtsp HIGH 7.8
CVE-2026-1108

A security vulnerability has been detected in cijliu librtsp up to 2ec1a81ad65280568a0c7c16420d7c10fde13b04. The affected element is the function rts…

Fix: after 2021-03-14
Fix from $1,950 2026-01-18
Ipados HIGH 7.8
CVE-2024-44238

The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1. An app may be able to corru…

Fix: 18.1+
Fix from $1,950 2026-01-16
Dome Flare Firmware MEDIUM 6.1
CVE-2025-65396

A vulnerability in the boot process of Blurams Flare Camera version 24.1114.151.929 and earlier allows a physically proximate attacker to hijack the …

Fix: after 24.1114.151.929
Fix from $1,600 2026-01-14
Firefox MEDIUM 5.3
CVE-2026-0886

Incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7, Thunderb…

Fix: 115.32.0 / 140.7.0+
Fix from $1,600 2026-01-13
Firefox HIGH 8.1
CVE-2026-0891

Memory safety bugs present in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory…

Fix: 140.7.0 / 147.0+
Fix from $1,950 2026-01-13
Firefox CRITICAL 9.8
CVE-2026-0892

Memory safety bugs present in Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enoug…

Fix: 147.0+
Fix from $2,300 2026-01-13