Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Firefox HIGH 8.8
CVE-2024-9400

A potential memory corruption vulnerability could be triggered if an attacker had the ability to trigger an OOM at a specific moment during JIT compi…

Fix: 128.3.0 / 131.0+
Fix from $1,950 2024-10-01
Firefox CRITICAL 9.8
CVE-2024-9401

Memory safety bugs present in Firefox 130, Firefox ESR 115.15, Firefox ESR 128.2, and Thunderbird 128.2. Some of these bugs showed evidence of memory…

Fix: 115.16.0 / 128.3.0+
Fix from $2,300 2024-10-01
Firefox CRITICAL 9.8
CVE-2024-9402

Memory safety bugs present in Firefox 130, Firefox ESR 128.2, and Thunderbird 128.2. Some of these bugs showed evidence of memory corruption and we p…

Fix: 128.3.0 / 131.0+
Fix from $2,300 2024-10-01
Firefox HIGH 7.3
CVE-2024-9403

Memory safety bugs present in Firefox 130. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the…

Fix: 131.0+
Fix from $1,950 2024-10-01
Firefox HIGH 8.8
CVE-2024-9396

It is currently unknown if this issue is exploitable but a condition may arise where the structured clone of certain objects could lead to memory cor…

Fix: 128.3.0 / 131.0+
Fix from $1,950 2024-10-01
Unclassified CRITICAL 9.2
CVE-2024-22170

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Western Digital My Cloud ddns-start on Linux allows Overflow…

Mitigation only
Fix from $2,300 2024-09-27
Chrome CRITICAL 9.6
CVE-2024-7024

Inappropriate implementation in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially perform a sandbox escape via a cr…

Fix: 126.0.6478.54+
Fix from $2,300 2024-09-23
Envoy HIGH 7.5
CVE-2024-45810

Envoy is a cloud-native high-performance edge/middle/service proxy. Envoy will crash when the http async client is handling `sendLocalReply` under so…

Fix: 1.28.7 / 1.29.9+
Fix from $1,950 2024-09-20
Envoy HIGH 7.5
CVE-2024-45809

Envoy is a cloud-native high-performance edge/middle/service proxy. Jwt filter will lead to an Envoy crash when clear route cache with remote JWKs. I…

Fix: 1.29.9 / 1.30.6+
Fix from $1,950 2024-09-20
Ipados HIGH 7.5
CVE-2024-27879

The issue was addressed with improved bounds checks. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18. An attacker may be able t…

Fix: 17.7+
Fix from $1,950 2024-09-17
Photoshop HIGH 7.8
CVE-2024-43756

Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code e…

Fix: 24.7.5 / 25.12+
Fix from $1,950 2024-09-13
After Effects HIGH 7.8
CVE-2024-39380

After Effects versions 23.6.6, 24.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execut…

Fix: 23.6.9 / 24.6+
Fix from $1,950 2024-09-13
Wibukey HIGH 7.8
CVE-2024-45181

An issue was discovered in WibuKey64.sys in WIBU-SYSTEMS WibuKey before v6.70 and fixed in v.6.70. An improper bounds check allows crafted packets to…

Fix: 6.70+
Fix from $1,950 2024-09-12
Precision 7920 Firmware MEDIUM 5.5
CVE-2024-42425

Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Access of Memory Location After End of Buffer vulnerability. A low privileg…

Fix: 2.22.1+
Fix from $1,600 2024-09-10
T8 Firmware HIGH 8.8
CVE-2024-8573

A vulnerability, which was classified as critical, was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/4.1.8cu.5207. This affects th…

No fix yet
Fix from $1,950 2024-09-08
Firefox CRITICAL 9.8
CVE-2024-8389

Memory safety bugs present in Firefox 129. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the…

Mitigation only
Fix from $2,300 2024-09-03
Firefox CRITICAL 9.8
CVE-2024-8387

Memory safety bugs present in Firefox 129, Firefox ESR 128.1, and Thunderbird 128.1. Some of these bugs showed evidence of memory corruption and we p…

Mitigation only
Fix from $2,300 2024-09-03
Qcn9000 Firmware MEDIUM 6.8
CVE-2024-33016

memory corruption when an invalid firehose patch command is invoked.

No fix yet
Fix from $1,600 2024-09-02
Idol2 CRITICAL 9.8
CVE-2024-45169

An issue was discovered in UCI IDOL 2 (aka uciIDOL or IDOL2) through 2.12. Due to improper input validation, improper deserialization, and improper r…

Fix: after 2.12
Fix from $2,300 2024-08-22
Linux Kernel MEDIUM 5.5
CVE-2022-48940

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix crash due to incorrect copy_map_value When both bpf_spin_lock and bpf_…

Fix: 5.15.26 / 5.16.12+
Fix from $1,600 2024-08-22
Chrome HIGH 8.8
CVE-2024-7966

Out of bounds memory access in Skia in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had compromised the renderer process to per…

Fix: 128.0.6613.84+
Fix from $1,950 2024-08-21
Chrome HIGH 8.8
CVE-2024-7972

Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially perform out of bounds memory acce…

Fix: 128.0.6613.84+
Fix from $1,950 2024-08-21
Maxicharger Ac Elite Business C50 Firmware HIGH 8.8
CVE-2024-7795

Autel MaxiCharger AC Elite Business C50 AppAuthenExchangeRandomNum Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabilit…

Fix: 1.36.00+
Fix from $1,950 2024-08-21
Unclassified HIGH 8.4
CVE-2024-44067

The T-Head XuanTie C910 CPU in the TH1520 SoC and the T-Head XuanTie C920 CPU in the SOPHON SG2042 have instructions that allow unprivileged attacker…

Mitigation only
Fix from $1,950 2024-08-19
Security Directory Integrator CRITICAL 9.8
CVE-2022-33162

IBM Security Directory Integrator 7.2.0 and Security Verify Directory Integrator 10.0.0 does not perform any authentication for functionality that re…

Mitigation only
Fix from $2,300 2024-08-16
Nr15 CRITICAL 9.8
CVE-2024-20082

In Modem, there is a possible memory corruption due to a missing bounds check. This could lead to remote code execution with no additional execution …

Mitigation only
Fix from $2,300 2024-08-14
Edge Chromium HIGH 7.8
CVE-2024-38218

Microsoft Edge (HTML-based) Memory Corruption Vulnerability

Fix: 127.0.2651.98+
Fix from $1,950 2024-08-12
Epyc 7203 Firmware HIGH 7.9
CVE-2024-21980

Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to potentially overwrite a guest's memory or UMC seed res…

Mitigation only
Fix from $1,950 2024-08-05
Epyc 7203 Firmware MEDIUM 6.0
CVE-2023-31355

Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to overwrite a guest's UMC seed potentially allowing read…

Mitigation only
Fix from $1,600 2024-08-05
Wsa8845h Firmware HIGH 7.8
CVE-2024-23355

Memory corruption when keymaster operation imports a shared key.

Mitigation only
Fix from $1,950 2024-08-05