Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Ac20 Firmware HIGH 8.8
CVE-2025-14656

A weakness has been identified in Tenda AC20 16.03.08.12. This affects the function httpd of the file /goform/openSchedWifi. Executing a manipulation…

No fix yet
Fix from $1,950 2025-12-14
Ac20 Firmware HIGH 8.8
CVE-2025-14655

A security flaw has been discovered in Tenda AC20 16.03.08.12. The impacted element is the function formSetRebootTimer of the file /goform/SetSysAuto…

No fix yet
Fix from $1,950 2025-12-14
Ac20 Firmware HIGH 8.8
CVE-2025-14654

A vulnerability was identified in Tenda AC20 16.03.08.12. The affected element is the function formSetPPTPUserList of the file /goform/setPptpUserLis…

No fix yet
Fix from $1,950 2025-12-14
Unclassified MEDIUM 6.3
CVE-2025-14607

A vulnerability was detected in OFFIS DCMTK up to 3.6.9. Affected by this issue is the function DcmByteString::makeDicomByteString of the file dcmdat…

Patch available
Fix from $1,600 2025-12-13
macOS HIGH 8.8
CVE-2025-43539EPSS 6%

The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Sequoia 15.…

Fix: 14.8.3 / 15.7.3+
Fix from $1,950 2025-12-12
512w Firmware HIGH 8.8
CVE-2025-14572

A vulnerability was found in UTT 进取 512W up to 1.7.7-171114. This affects an unknown part of the file /goform/formWebAuthGlobalConfig. Performing m…

Fix: after 1.7.7-171114
Fix from $1,950 2025-12-12
Chrome HIGH 8.8
CVE-2025-14174 KEVEPSS 23%

Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access…

Fix: 18.7.3 / 26.2+
Fix from $1,950 2025-12-12
Unclassified MEDIUM 5.3
CVE-2025-14569

A vulnerability was detected in ggml-org whisper.cpp up to 1.8.2. Affected is the function read_audio_data of the file /whisper.cpp/examples/common-w…

Mitigation only
Fix from $1,600 2025-12-12
512w Firmware CRITICAL 9.8
CVE-2025-14535EPSS 6%

A vulnerability was identified in UTT 进取 512W up to 3.1.7.7-171114. Affected is the function strcpy of the file /goform/formConfigFastDirectionW. T…

Fix: after 1.7.7-171114
Fix from $2,300 2025-12-11
512w Firmware CRITICAL 9.8
CVE-2025-14534EPSS 6%

A vulnerability was determined in UTT 进取 512W up to 3.1.7.7-171114. This impacts the function strcpy of the file /goform/formNatStaticMap of the co…

Fix: after 1.7.7-171114
Fix from $2,300 2025-12-11
Ch22 Firmware HIGH 8.8
CVE-2025-14526

A security flaw has been discovered in Tenda CH22 1.0.0.1. This affects the function frmL7ImForm of the file /goform/L7Im. Performing a manipulation …

No fix yet
Fix from $1,950 2025-12-11
Firefox CRITICAL 9.8
CVE-2025-14330

JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thun…

Fix: 140.6.0 / 146.0+
Fix from $2,300 2025-12-09
Firefox HIGH 8.1
CVE-2025-14333

Memory safety bugs present in Firefox ESR 140.5, Thunderbird ESR 140.5, Firefox 145 and Thunderbird 145. Some of these bugs showed evidence of memory…

Fix: 140.6.0 / 146.0+
Fix from $1,950 2025-12-09
Unclassified HIGH 8.8
CVE-2025-14196

A weakness has been identified in H3C Magic B1 up to 100R004. The affected element is the function sub_44de0 of the file /goform/aspForm. This manipu…

No fix yet
Fix from $1,950 2025-12-07
512w Firmware CRITICAL 9.8
CVE-2025-14191

A vulnerability has been found in UTT 进取 512W up to 1.7.7-171114. Affected by this issue is the function strcpy of the file /goform/formP2PLimitCon…

Fix: after 1.7.7-171114
Fix from $2,300 2025-12-07
Unclassified HIGH 7.2
CVE-2025-14187

A weakness has been identified in UGREEN DH2100+ up to 5.3.0.251125. This affects the function handler_file_backup_create of the file /v1/file/backup…

Mitigation only
Fix from $1,950 2025-12-07
520w Firmware CRITICAL 9.8
CVE-2025-14141

A flaw has been found in UTT 进取 520W 1.7.7-180627. The impacted element is the function strcpy of the file /goform/formArpBindConfig. Executing man…

Mitigation only
Fix from $2,300 2025-12-06
520w Firmware MEDIUM 6.5
CVE-2025-14140

A vulnerability was detected in UTT 进取 520W 1.7.7-180627. The affected element is the function strcpy of the file /goform/websHostFilter. Performin…

No fix yet
Fix from $1,600 2025-12-06
520w Firmware MEDIUM 5.7
CVE-2025-14139

A security vulnerability has been detected in UTT 进取 520W 1.7.7-180627. Impacted is the function strcpy of the file /goform/formConfigDnsFilterGlob…

No fix yet
Fix from $1,600 2025-12-06
Re6500 Firmware HIGH 8.8
CVE-2025-14136

A security flaw has been discovered in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.…

No fix yet
Fix from $1,950 2025-12-06
Re6500 Firmware HIGH 8.8
CVE-2025-14135

A vulnerability was identified in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. …

No fix yet
Fix from $1,950 2025-12-06
Re6500 Firmware HIGH 8.8
CVE-2025-14134

A vulnerability was determined in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. …

No fix yet
Fix from $1,950 2025-12-06
Re6500 Firmware HIGH 8.8
CVE-2025-14133

A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. Affec…

No fix yet
Fix from $1,950 2025-12-06
Diskboss HIGH 7.8
CVE-2020-36881

Flexsense DiskBoss 7.7.14 contains a local buffer overflow vulnerability in the 'Input Directory' component that allows unauthenticated attackers to …

No fix yet
Fix from $1,950 2025-12-05
Diskboss HIGH 7.8
CVE-2020-36880

Flexsense DiskBoss 7.7.14 contains a local buffer overflow vulnerability in the 'Reports and Data Directory' field that allows an attacker to execute…

No fix yet
Fix from $1,950 2025-12-05
Magic B0 Firmware CRITICAL 9.8
CVE-2025-14015

A weakness has been identified in H3C Magic B0 up to 100R002. This impacts the function EditWlanMacList of the file /goform/aspForm. This manipulatio…

Fix: after 100R002
Fix from $2,300 2025-12-04
Exynos 1280 Firmware MEDIUM 5.3
CVE-2025-53965

An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 15…

Mitigation only
Fix from $1,600 2025-12-03
Webassembly Micro Runtime HIGH 7.4
CVE-2025-64713

WebAssembly Micro Runtime (WAMR) is a lightweight standalone WebAssembly (Wasm) runtime. Prior to version 2.4.4, an out-of-bounds array access issue …

Fix: 2.4.4+
Fix from $1,950 2025-11-25
Dgx Os HIGH 7.8
CVE-2025-33195

NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause unexpected memory buffer operations. A successful exp…

Mitigation only
Fix from $1,950 2025-11-25
Dwr M920 Firmware HIGH 8.8
CVE-2025-13553

A weakness has been identified in D-Link DWR-M920 1.1.50. This affects the function sub_41C7FC of the file /boafrm/formPinManageSetup. This manipulat…

No fix yet
Fix from $1,950 2025-11-23