Vulnerability index

Browse CVEs

3,562 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Stack-based Buffer OverflowCWE-121 × clear
Dir 513 Firmware HIGH 8.8
CVE-2026-4555

A weakness has been identified in D-Link DIR-513 1.10. The impacted element is the function formEasySetTimezone of the file /goform/formEasySetTimezo…

No fix yet
Fix from $1,950 2026-03-22
F453 Firmware HIGH 8.8
CVE-2026-4553

A vulnerability was identified in Tenda F453 1.0.0.3. Impacted is the function fromNatlimit of the file /goform/Natlimit of the component Parameters …

No fix yet
Fix from $1,950 2026-03-22
F453 Firmware HIGH 8.8
CVE-2026-4551

A vulnerability was found in Tenda F453 1.0.0.3. This vulnerability affects the function fromSafeClientFilter of the file /goform/SafeClientFilter of…

No fix yet
Fix from $1,950 2026-03-22
F453 Firmware HIGH 8.8
CVE-2026-4552

A vulnerability was determined in Tenda F453 1.0.0.3. This issue affects the function fromVirtualSer of the file /goform/VirtualSer of the component …

No fix yet
Fix from $1,950 2026-03-22
Fh451 Firmware HIGH 8.8
CVE-2026-4534

A flaw has been found in Tenda FH451 1.0.0.9. This affects the function formWrlExtraSet of the file /goform/WrlExtraSet. This manipulation of the arg…

No fix yet
Fix from $1,950 2026-03-22
Fh451 Firmware HIGH 8.8
CVE-2026-4535

A vulnerability has been found in Tenda FH451 1.0.0.9. This vulnerability affects the function WrlclientSet of the file /goform/WrlclientSet. Such ma…

No fix yet
Fix from $1,950 2026-03-22
Dhp 1320 Firmware HIGH 8.8
CVE-2026-4529

A vulnerability was identified in D-Link DHP-1320 1.00WWB04. This affects the function redirect_count_down_page of the component SOAP Handler. Such m…

No fix yet
Fix from $1,950 2026-03-21
Gmt HIGH 7.8
CVE-2026-33147

GMT is an open source collection of command-line tools for manipulating geographic and Cartesian data sets. In versions from 6.6.0 and prior, a stack…

Fix: after 6.6.0
Fix from $1,950 2026-03-20
Unclassified HIGH 8.8
CVE-2026-4492

A vulnerability was found in Tenda A18 Pro 02.03.02.28. The affected element is the function set_qosMib_list of the file /goform/formSetQosBand. Perf…

Mitigation only
Fix from $1,950 2026-03-20
Unclassified HIGH 8.8
CVE-2026-4493

A vulnerability was determined in Tenda A18 Pro 02.03.02.28. The impacted element is the function sub_423B50 of the file /goform/setMacFilterCfg of t…

Mitigation only
Fix from $1,950 2026-03-20
Unclassified HIGH 8.8
CVE-2026-4490

A flaw has been found in Tenda A18 Pro 02.03.02.28. This issue affects the function setSchedWifi of the file /goform/openSchedWifi. This manipulation…

Mitigation only
Fix from $1,950 2026-03-20
Unclassified HIGH 8.8
CVE-2026-4491

A vulnerability has been found in Tenda A18 Pro 02.03.02.28. Impacted is the function fromSetIpMacBind of the file /goform/SetIpMacBind. Such manipul…

Mitigation only
Fix from $1,950 2026-03-20
Media Streaming Add On CRITICAL 9.1
CVE-2025-59383

A buffer overflow vulnerability has been reported to affect Media Streaming Add-On. The remote attackers can then exploit the vulnerability to modify…

Fix: 500.1.1.0+
Fix from $2,300 2026-03-20
Archer Ax53 Firmware CRITICAL 9.8
CVE-2025-15608

This vulnerability in AX53 v1, AX55 v4 and AX55 v4.6 results from insufficient input sanitization in the device’s probe handling logic, where unvalid…

Mitigation only
Fix from $2,300 2026-03-20
Unclassified HIGH 8.8
CVE-2026-4489

A vulnerability was detected in Tenda A18 Pro 02.03.02.28. This vulnerability affects the function form_fast_setting_wifi_set of the file /goform/fas…

Mitigation only
Fix from $1,950 2026-03-20
Dir 513 Firmware HIGH 8.8
CVE-2026-4486

A vulnerability was found in D-Link DIR-513 1.10. This affects the function formEasySetPassword of the file /goform/formEasySetPassword of the compon…

No fix yet
Fix from $1,950 2026-03-20
Chrome HIGH 8.8
CVE-2026-4444

Stack buffer overflow in WebRTC in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit stack corruption via a craf…

Fix: 146.0.7680.153+
Fix from $1,950 2026-03-20
Openwrt CRITICAL 9.8
CVE-2026-30871

OpenWrt Project is a Linux operating system targeting embedded devices. In versions prior to 24.10.6 and 25.12.1, the mdns daemon has a Stack-based B…

Fix: 24.10.6 / 25.12.1+
Fix from $2,300 2026-03-19
Openwrt CRITICAL 9.8
CVE-2026-30872

OpenWrt Project is a Linux operating system targeting embedded devices. In versions prior to 24.10.6 and 25.12.1, the mdns daemon has a Stack-based B…

Fix: 24.10.6 / 25.12.1+
Fix from $2,300 2026-03-19
Wolfssl HIGH 7.1
CVE-2026-0819

A stack buffer overflow vulnerability exists in wolfSSL's PKCS7 SignedData encoding functionality. In wc_PKCS7_BuildSignedAttributes(), when adding c…

Fix: 5.9.0+
Fix from $1,950 2026-03-19
Ncurses HIGH 7.8
CVE-2025-69720

The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c.

Fix: after 6.4
Fix from $1,950 2026-03-19
Px4 Drone Autopilot MEDIUM 6.5
CVE-2026-32743

PX4 is an open-source autopilot stack for drones and unmanned vehicles. Versions 1.17.0-rc2 and below are vulnerable to Stack-based Buffer Overflow t…

Fix: 1.17.0+
Fix from $1,600 2026-03-19
Htslib HIGH 8.1
CVE-2026-31971

HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence alignment data using a…

Fix: 1.21.1 / 1.22.2+
Fix from $1,950 2026-03-18
Htslib HIGH 8.1
CVE-2026-31968

HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence alignment data using a…

Fix: 1.21.1 / 1.22.2+
Fix from $1,950 2026-03-18
Unclassified MEDIUM 6.5
CVE-2026-22320

A stack-based buffer overflow in the CLI's TFTP file‑transfer command handling allows a low-privileged attacker with Telnet/SSH access to trigger mem…

Mitigation only
Fix from $1,600 2026-03-18
Unclassified MEDIUM 5.3
CVE-2026-22321

A stack-based buffer overflow in the device's Telnet/SSH CLI login routine occurs when a unauthenticated attacker send an oversized or unexpected use…

Mitigation only
Fix from $1,600 2026-03-18
Unclassified MEDIUM 6.5
CVE-2026-22316

A remote attacker with user privileges for the webUI can use the setting of the TFTP Filename with a POST Request to trigger a stack-based Buffer Ove…

Mitigation only
Fix from $1,600 2026-03-18
Wazuh HIGH 7.2
CVE-2026-25772

Wazuh is a free and open source platform used for threat prevention, detection, and response. Starting in version 4.4.0 and prior to version 4.14.3, …

Fix: 4.14.3+
Fix from $1,950 2026-03-17
Wazuh HIGH 7.2
CVE-2026-25790

Wazuh is a free and open source platform used for threat prevention, detection, and response. Starting in version 3.9.0 and prior to version 4.14.3, …

Fix: 4.14.3+
Fix from $1,950 2026-03-17
Ac8 Firmware CRITICAL 9.8
CVE-2026-4254

A weakness has been identified in Tenda AC8 up to 16.03.50.11. This vulnerability affects the function doSystemCmd of the file /goform/SysToolChangeP…

Fix: after 16.03.50.11
Fix from $2,300 2026-03-16