Vulnerability index

Browse CVEs

4,220 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
HIGH 8.6 CVE-2026-4690 Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability was fixed in Firefox 149, Firefox ES… Firefox 115.34.0 / 140.9.0+ Fix from $1,9502026-03-24 MEDIUM 6.2 CVE-2026-30006 XnSoft NConvert 7.230 is vulnerable to Stack Buffer Overrun via a crafted .tiff file. Nconvert No fix yet Fix from $1,6002026-03-23 HIGH 8.8 CVE-2026-4565 A vulnerability was detected in Tenda AC21 16.03.08.16. Impacted is the function formSetQosBand of the file /goform/SetNetControlList. Performing a m… Ac21 Firmware No fix yet Fix from $1,9502026-03-23 HIGH 8.8 CVE-2026-4488 A vulnerability was identified in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected is the function strcpy of the file /goform/setSysAdm. Such man… Mitigation only Fix from $1,9502026-03-20 HIGH 8.8 CVE-2026-4487 A vulnerability was determined in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/websHostFilter. This mani… Mitigation only Fix from $1,9502026-03-20 HIGH 7.8 CVE-2025-69720 The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c. Ncurses after 6.4 Fix from $1,9502026-03-19 CRITICAL 9.8 CVE-2026-27459 pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to `set… Pyopenssl 26.0.0+ Fix from $2,3002026-03-18 HIGH 8.8 CVE-2026-4318 A vulnerability was determined in UTT HiPER 810G up to 1.7.7-171114. Affected is the function strcpy of the file /goform/formApLbConfig. This manipul… Mitigation only Fix from $1,9502026-03-17 CRITICAL 9.1 CVE-2026-4177 YAML::Syck versions through 1.36 for Perl has several potential security vulnerabilities including a high-severity heap buffer overflow in the YAML e… Yaml\ 1.37+ Fix from $2,3002026-03-16 HIGH 7.5 CVE-2026-4227 A security vulnerability has been detected in LB-LINK BL-WR9000 2.4.9. The impacted element is the function sub_44D844 of the file /goform/get_hidess… Bl Wr9000 Firmware No fix yet Fix from $1,9502026-03-16 HIGH 7.8 CVE-2026-3081 GStreamer H.266 Codec Parser Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute a… Gstreamer 1.28.1+ Fix from $1,9502026-03-16 HIGH 7.8 CVE-2026-3082 GStreamer JPEG Parser Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary… Gstreamer 1.28.1+ Fix from $1,9502026-03-16 HIGH 8.1 CVE-2026-32706 PX4 autopilot is a flight control solution for drones. Prior to 1.17.0-rc2, The crsf_rc parser accepts an oversized variable-length known packet and … Px4 Drone Autopilot 1.17.0+ Fix from $1,9502026-03-16 HIGH 7.8 CVE-2026-2920 GStreamer ASF Demuxer Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary… Gstreamer 1.28.1+ Fix from $1,9502026-03-16 MEDIUM 6.8 CVE-2026-0849 Malformed ATAES132A responses with an oversized length field overflow a 52-byte stack buffer in the Zephyr crypto driver, allowing a compromised devi… Zephyr Patch available Fix from $1,6002026-03-16 CRITICAL 9.8 CVE-2026-32746EPSS 24% telnetd in GNU inetutils through 2.7 allows an out-of-bounds write in the LINEMODE SLC (Set Local Characters) suboption handler because add_slc does … Inetutils after 2.7 Fix from $2,3002026-03-13 HIGH 7.8 CVE-2025-71263 In UNIX Fourth Research Edition (v4), the su command is vulnerable to a buffer overflow due to the 'password' variable having a fixed size of 100 byt… Unix Mitigation only Fix from $1,9502026-03-13 HIGH 8.8 CVE-2023-43010 The issue was addressed with improved memory handling. This issue is fixed in iOS 17.2 and iPadOS 17.2, macOS Sonoma 14.2, Safari 17.2, iOS 16.7.15 a… Safari 14.2 / 15.8.7+ Fix from $1,9502026-03-12 CRITICAL 9.8 CVE-2026-0110 In MM_DATA_IND of cn_NrSmMsgHdlrFromMM.cpp, there is a possible EoP due to memory corruption. This could lead to remote escalation of privilege with … Android Mitigation only Fix from $2,3002026-03-10 HIGH 7.8 CVE-2025-48611 In DeviceId of DeviceId.java, there is a possible desync in persistence due to a missing bounds check. This could lead to local escalation of privile… Android Mitigation only Fix from $1,9502026-03-10 HIGH 7.8 CVE-2026-31795 iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack buffer overflow write… Iccdev 2.3.1.5+ Fix from $1,9502026-03-10 HIGH 7.8 CVE-2026-30987 iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack buffer overflow in CI… Iccdev 2.3.1.5+ Fix from $1,9502026-03-10 MEDIUM 6.1 CVE-2026-30981 iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-buffer-overflow read i… Iccdev 2.3.1.5+ Fix from $1,6002026-03-10 HIGH 7.8 CVE-2026-30983 iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack buffer overflow in ic… Iccdev 2.3.1.5+ Fix from $1,9502026-03-10 HIGH 7.8 CVE-2026-30985 iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-based buffer overflow … Iccdev 2.3.1.5+ Fix from $1,9502026-03-10 HIGH 7.8 CVE-2026-30979 iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-based buffer overflow … Iccdev 2.3.1.5+ Fix from $1,9502026-03-10 HIGH 8.8 CVE-2026-22627 A buffer copy without checking size of input ('classic buffer overflow') vulnerability in Fortinet FortiSwitchAXFixed 1.0.0 through 1.0.1 may allow a… Fortiswitchaxfixed 1.0.2+ Fix from $1,9502026-03-10 HIGH 8.8 CVE-2026-3815 A weakness has been identified in UTT HiPER 810G up to 1.7.7-1711. This affects the function strcpy of the file /goform/formApMail. Executing a manip… 810g Firmware after 1.7.7-171114 Fix from $1,9502026-03-09 HIGH 8.8 CVE-2026-3814 A security flaw has been discovered in UTT HiPER 810G up to 1.7.7-1711. Affected by this issue is the function strcpy of the file /goform/getOneApCon… 810g Firmware after 1.7.7-171114 Fix from $1,9502026-03-09 HIGH 8.8 CVE-2026-3701 A security vulnerability has been detected in H3C Magic B1 up to 100R004. Affected by this vulnerability is the function Edit_BasicSSID_5G of the fil… Magic B1 Firmware after 100r004 Fix from $1,9502026-03-08