Vulnerability index

Browse CVEs

4,220 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Firefox HIGH 8.6
CVE-2026-4690

Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability was fixed in Firefox 149, Firefox ES…

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24
Nconvert MEDIUM 6.2
CVE-2026-30006

XnSoft NConvert 7.230 is vulnerable to Stack Buffer Overrun via a crafted .tiff file.

No fix yet
Fix from $1,600 2026-03-23
Ac21 Firmware HIGH 8.8
CVE-2026-4565

A vulnerability was detected in Tenda AC21 16.03.08.16. Impacted is the function formSetQosBand of the file /goform/SetNetControlList. Performing a m…

No fix yet
Fix from $1,950 2026-03-23
Unclassified HIGH 8.8
CVE-2026-4488

A vulnerability was identified in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected is the function strcpy of the file /goform/setSysAdm. Such man…

Mitigation only
Fix from $1,950 2026-03-20
Unclassified HIGH 8.8
CVE-2026-4487

A vulnerability was determined in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/websHostFilter. This mani…

Mitigation only
Fix from $1,950 2026-03-20
Ncurses HIGH 7.8
CVE-2025-69720

The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c.

Fix: after 6.4
Fix from $1,950 2026-03-19
Pyopenssl CRITICAL 9.8
CVE-2026-27459

pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to `set…

Fix: 26.0.0+
Fix from $2,300 2026-03-18
Unclassified HIGH 8.8
CVE-2026-4318

A vulnerability was determined in UTT HiPER 810G up to 1.7.7-171114. Affected is the function strcpy of the file /goform/formApLbConfig. This manipul…

Mitigation only
Fix from $1,950 2026-03-17
Yaml\ CRITICAL 9.1
CVE-2026-4177

YAML::Syck versions through 1.36 for Perl has several potential security vulnerabilities including a high-severity heap buffer overflow in the YAML e…

Fix: 1.37+
Fix from $2,300 2026-03-16
Bl Wr9000 Firmware HIGH 7.5
CVE-2026-4227

A security vulnerability has been detected in LB-LINK BL-WR9000 2.4.9. The impacted element is the function sub_44D844 of the file /goform/get_hidess…

No fix yet
Fix from $1,950 2026-03-16
Gstreamer HIGH 7.8
CVE-2026-3081

GStreamer H.266 Codec Parser Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute a…

Fix: 1.28.1+
Fix from $1,950 2026-03-16
Gstreamer HIGH 7.8
CVE-2026-3082

GStreamer JPEG Parser Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Fix: 1.28.1+
Fix from $1,950 2026-03-16
Px4 Drone Autopilot HIGH 8.1
CVE-2026-32706

PX4 autopilot is a flight control solution for drones. Prior to 1.17.0-rc2, The crsf_rc parser accepts an oversized variable-length known packet and …

Fix: 1.17.0+
Fix from $1,950 2026-03-16
Gstreamer HIGH 7.8
CVE-2026-2920

GStreamer ASF Demuxer Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Fix: 1.28.1+
Fix from $1,950 2026-03-16
Zephyr MEDIUM 6.8
CVE-2026-0849

Malformed ATAES132A responses with an oversized length field overflow a 52-byte stack buffer in the Zephyr crypto driver, allowing a compromised devi…

Patch available
Fix from $1,600 2026-03-16
Inetutils CRITICAL 9.8
CVE-2026-32746EPSS 24%

telnetd in GNU inetutils through 2.7 allows an out-of-bounds write in the LINEMODE SLC (Set Local Characters) suboption handler because add_slc does …

Fix: after 2.7
Fix from $2,300 2026-03-13
Unix HIGH 7.8
CVE-2025-71263

In UNIX Fourth Research Edition (v4), the su command is vulnerable to a buffer overflow due to the 'password' variable having a fixed size of 100 byt…

Mitigation only
Fix from $1,950 2026-03-13
Safari HIGH 8.8
CVE-2023-43010

The issue was addressed with improved memory handling. This issue is fixed in iOS 17.2 and iPadOS 17.2, macOS Sonoma 14.2, Safari 17.2, iOS 16.7.15 a…

Fix: 14.2 / 15.8.7+
Fix from $1,950 2026-03-12
Android CRITICAL 9.8
CVE-2026-0110

In MM_DATA_IND of cn_NrSmMsgHdlrFromMM.cpp, there is a possible EoP due to memory corruption. This could lead to remote escalation of privilege with …

Mitigation only
Fix from $2,300 2026-03-10
Android HIGH 7.8
CVE-2025-48611

In DeviceId of DeviceId.java, there is a possible desync in persistence due to a missing bounds check. This could lead to local escalation of privile…

Mitigation only
Fix from $1,950 2026-03-10
Iccdev HIGH 7.8
CVE-2026-31795

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack buffer overflow write…

Fix: 2.3.1.5+
Fix from $1,950 2026-03-10
Iccdev HIGH 7.8
CVE-2026-30987

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack buffer overflow in CI…

Fix: 2.3.1.5+
Fix from $1,950 2026-03-10
Iccdev MEDIUM 6.1
CVE-2026-30981

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-buffer-overflow read i…

Fix: 2.3.1.5+
Fix from $1,600 2026-03-10
Iccdev HIGH 7.8
CVE-2026-30983

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack buffer overflow in ic…

Fix: 2.3.1.5+
Fix from $1,950 2026-03-10
Iccdev HIGH 7.8
CVE-2026-30985

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-based buffer overflow …

Fix: 2.3.1.5+
Fix from $1,950 2026-03-10
Iccdev HIGH 7.8
CVE-2026-30979

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-based buffer overflow …

Fix: 2.3.1.5+
Fix from $1,950 2026-03-10
Fortiswitchaxfixed HIGH 8.8
CVE-2026-22627

A buffer copy without checking size of input ('classic buffer overflow') vulnerability in Fortinet FortiSwitchAXFixed 1.0.0 through 1.0.1 may allow a…

Fix: 1.0.2+
Fix from $1,950 2026-03-10
810g Firmware HIGH 8.8
CVE-2026-3815

A weakness has been identified in UTT HiPER 810G up to 1.7.7-1711. This affects the function strcpy of the file /goform/formApMail. Executing a manip…

Fix: after 1.7.7-171114
Fix from $1,950 2026-03-09
810g Firmware HIGH 8.8
CVE-2026-3814

A security flaw has been discovered in UTT HiPER 810G up to 1.7.7-1711. Affected by this issue is the function strcpy of the file /goform/getOneApCon…

Fix: after 1.7.7-171114
Fix from $1,950 2026-03-09
Magic B1 Firmware HIGH 8.8
CVE-2026-3701

A security vulnerability has been detected in H3C Magic B1 up to 100R004. Affected by this vulnerability is the function Edit_BasicSSID_5G of the fil…

Fix: after 100r004
Fix from $1,950 2026-03-08