Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Firefox HIGH 8.0
CVE-2026-0878

Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 147, Firefox ESR …

Fix: 140.7.0 / 147.0+
Fix from $1,950 2026-01-13
Firefox CRITICAL 9.8
CVE-2026-0879

Sandbox escape due to incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firef…

Fix: 115.32.0 / 140.7.0+
Fix from $2,300 2026-01-13
520w Firmware HIGH 8.8
CVE-2026-0841

A vulnerability was detected in UTT 进取 520W 1.7.7-180627. Affected by this issue is the function strcpy of the file /goform/formPictureUrl. The man…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-11
520w Firmware HIGH 8.8
CVE-2026-0840

A security vulnerability has been detected in UTT 进取 520W 1.7.7-180627. Affected by this vulnerability is the function strcpy of the file /goform/f…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-11
520w Firmware HIGH 8.8
CVE-2026-0838

A security flaw has been discovered in UTT 进取 520W 1.7.7-180627. This impacts the function strcpy of the file /goform/ConfigWirelessBase. Performin…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-11
520w Firmware HIGH 8.8
CVE-2026-0839

A weakness has been identified in UTT 进取 520W 1.7.7-180627. Affected is the function strcpy of the file /goform/APSecurity. Executing a manipulatio…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-11
520w Firmware HIGH 8.8
CVE-2026-0837

A vulnerability was identified in UTT 进取 520W 1.7.7-180627. This affects the function strcpy of the file /goform/formFireWall. Such manipulation of…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-11
520w Firmware HIGH 8.8
CVE-2026-0836

A vulnerability was determined in UTT 进取 520W 1.7.7-180627. The impacted element is the function strcpy of the file /goform/formConfigFastDirection…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-11
Quickjs HIGH 8.8
CVE-2026-0822

A vulnerability was identified in quickjs-ng quickjs up to 0.11.0. This issue affects the function js_typed_array_sort of the file quickjs.c. The man…

Fix: after 0.11.0
Fix from $1,950 2026-01-10
Quickjs CRITICAL 9.8
CVE-2026-0821

A vulnerability was determined in quickjs-ng quickjs up to 0.11.0. This vulnerability affects the function js_typed_array_constructor of the file qui…

Fix: after 0.11.0
Fix from $2,300 2026-01-10
Safari MEDIUM 6.5
CVE-2025-46298

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.2, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, tvOS 26.2, vis…

Fix: 26.2+
Fix from $1,600 2026-01-09
Ac23 Firmware CRITICAL 9.8
CVE-2026-0640

A weakness has been identified in Tenda AC23 16.03.07.52. This affects the function sscanf of the file /goform/PowerSaveSet. Executing a manipulation…

Mitigation only
Fix from $2,300 2026-01-06
Unifi Protect MEDIUM 6.5
CVE-2026-21634

A malicious actor with access to the adjacent network could overflow the UniFi Protect Application (Version 6.1.79 and earlier) discovery protocol ca…

Fix: 6.2.72+
Fix from $1,600 2026-01-05
520w Firmware HIGH 8.8
CVE-2025-15462

A vulnerability has been found in UTT 进取 520W 1.7.7-180627. This issue affects the function strcpy of the file /goform/ConfigAdvideo. The manipulat…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-05
520w Firmware HIGH 8.8
CVE-2025-15461

A flaw has been found in UTT 进取 520W 1.7.7-180627. This vulnerability affects the function strcpy of the file /goform/formTaskEdit. Executing a man…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-05
520w Firmware HIGH 8.8
CVE-2025-15459

A security vulnerability has been detected in UTT 进取 520W 1.7.7-180627. Affected by this issue is the function strcpy of the file /goform/formUser.…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-05
520w Firmware HIGH 8.8
CVE-2025-15460

A vulnerability was detected in UTT 进取 520W 1.7.7-180627. This affects the function strcpy of the file /goform/formPptpClientConfig. Performing a m…

Fix: after 1.7.7-180627
Fix from $1,950 2026-01-05
512w Firmware HIGH 8.8
CVE-2025-15431

A flaw has been found in UTT 进取 512W 1.7.7-171114. This affects the function strcpy of the file /goform/formFtpServerDirConfig. Executing a manipul…

Fix: after 1.7.7-171114
Fix from $1,950 2026-01-02
512w Firmware HIGH 8.8
CVE-2025-15429

A security vulnerability has been detected in UTT 进取 512W 1.7.7-171114. Affected by this vulnerability is the function strcpy of the file /goform/f…

Fix: after 1.7.7-171114
Fix from $1,950 2026-01-02
512w Firmware HIGH 8.8
CVE-2025-15430

A vulnerability was detected in UTT 进取 512W 1.7.7-171114. Affected by this issue is the function strcpy of the file /goform/formFtpServerShareDirSe…

Fix: after 1.7.7-171114
Fix from $1,950 2026-01-02
512w Firmware HIGH 8.8
CVE-2025-15428

A weakness has been identified in UTT 进取 512W 1.7.7-171114. Affected is the function strcpy of the file /goform/formRemoteControl. This manipulatio…

Fix: after 1.7.7-171114
Fix from $1,950 2026-01-02
Wabt HIGH 7.8
CVE-2025-15412

A security vulnerability has been detected in WebAssembly wabt up to 1.0.39. This issue affects the function wabt::Decompiler::VarName of the file /s…

Fix: after 1.0.39
Fix from $1,950 2026-01-01
Wasm3 HIGH 7.8
CVE-2025-15413

A vulnerability was detected in wasm3 up to 0.5.0. Impacted is the function op_SetSlot_i32/op_CallIndirect of the file m3_exec.h. Performing a manipu…

Fix: after 0.5.0
Fix from $1,950 2026-01-01
Wabt HIGH 7.8
CVE-2025-15411

A weakness has been identified in WebAssembly wabt up to 1.0.39. This vulnerability affects the function wabt::AST::InsertNode of the file /src/repro…

Fix: after 1.0.39
Fix from $1,950 2026-01-01
Ac20 Firmware HIGH 8.8
CVE-2025-15356

A vulnerability has been found in Tenda AC20 up to 16.03.08.12. The impacted element is the function sscanf of the file /goform/PowerSaveSet. The man…

Fix: after 16.03.08.12
Fix from $1,950 2025-12-30
W6 S Firmware CRITICAL 9.8
CVE-2025-15255

A vulnerability was determined in Tenda W6-S 1.0.0.4(510). This impacts an unknown function of the file /bin/httpd of the component R7websSsecurityHa…

Mitigation only
Fix from $2,300 2025-12-30
M3 Firmware HIGH 8.8
CVE-2025-15253

A vulnerability has been found in Tenda M3 1.0.0.13(4903). The impacted element is an unknown function of the file /goform/exeCommand. Such manipulat…

No fix yet
Fix from $1,950 2025-12-30
M3 Firmware HIGH 8.8
CVE-2025-15252

A flaw has been found in Tenda M3 1.0.0.13(4903). The affected element is the function formSetRemoteDhcpForAp of the file /goform/setDhcpAP. This man…

No fix yet
Fix from $1,950 2025-12-30
Snap7 Rs CRITICAL 9.8
CVE-2025-15247

A vulnerability was identified in gmg137 snap7-rs up to 153d3e8c16decd7271e2a5b2e3da4d6f68589424. Affected by this issue is the function snap7_rs::cl…

Mitigation only
Fix from $2,300 2025-12-30
M3 Firmware HIGH 8.8
CVE-2025-15234

A weakness has been identified in Tenda M3 1.0.0.13(4903). Impacted is the function formSetRemoteInternetLanInfo of the file /goform/setInternetLanIn…

No fix yet
Fix from $1,950 2025-12-30